|
Log-Analyse und Auswertung: Windows XP: Computer bootet und arbeitet sehr langsam nach Viren-BefallWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
28.02.2014, 01:17 | #16 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Windows XP: Computer bootet und arbeitet sehr langsam nach Viren-Befall TFC - Temp File Cleaner Lade dir TFC (TempFileCleaner von Oldtimer) herunter und speichere es auf den Desktop.
SP3/IE8 für Windows XP (32-Bit) installieren
Achte beim Setup des IE8 wieder dadrauf, dass vorher möglichst alle Programme beendet und der Virenscanner deaktiviert wurde. Im Setup selbst bitte nicht an dem Verbesserungsprogramm teilnehmen (oder wie MS das nennt) und auch KEINE Updates über das Setup installieren. Die installieren wir später, ich sag dir dann wie. Melde dich wenn der IE8 drauf ist.
__________________ Logfiles bitte immer in CODE-Tags posten |
02.03.2014, 01:12 | #17 |
| Windows XP: Computer bootet und arbeitet sehr langsam nach Viren-Befall Habe alle Schritte wie angewiesen durchgeführt. Der TFC hat leider nicht funktioniert. Nachdem ich den Button "Start" angeklickt hatte, kam die Meldung "Getting User Folders" und "Stopping Running Processes". Am unteren Fensterrand war der leere "Statusbalken" zu sehen, aber nichts geschah. Ich habe es dreimal versucht und beim dritten Mal vier Stunden gewartet.
__________________ |
02.03.2014, 15:45 | #18 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Windows XP: Computer bootet und arbeitet sehr langsam nach Viren-Befall Frische FRST Logs. Haken setzen bei Additions
__________________
__________________ |
02.03.2014, 17:29 | #19 |
| Windows XP: Computer bootet und arbeitet sehr langsam nach Viren-Befall Hier die beiden Logfiles: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 02-03-2014 02 Ran by Raphaelis (administrator) on YOUR-C372440F79 on 02-03-2014 17:21:53 Running from C:\Dokumente und Einstellungen\Raphaelis\Eigene Dateien\Downloads Microsoft Windows XP Home Edition Service Pack 3 (X86) OS Language: German Standard Internet Explorer Version 8 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (Intel Corporation) C:\Programme\Intel\Wireless\Bin\EvtEng.exe (Intel Corporation ) C:\Programme\Intel\Wireless\Bin\S24EvMon.exe (brother Industries Ltd) C:\WINDOWS\system32\brsvc01a.exe (brother Industries Ltd) C:\WINDOWS\system32\brss01a.exe (Avira GmbH) C:\Programme\Avira\AntiVir Desktop\sched.exe (Adobe Systems Incorporated) C:\Programme\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe (Avira GmbH) C:\Programme\Avira\AntiVir Desktop\avguard.exe (TOSHIBA CORPORATION) C:\Programme\TOSHIBA\ConfigFree\CFSvcs.exe (Avira GmbH) C:\Programme\Avira\AntiVir Desktop\avshadow.exe (Oracle Corporation) C:\Programme\Java\jre7\bin\jqs.exe (Malwarebytes Corporation) C:\Programme\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation) C:\Programme\Malwarebytes' Anti-Malware\mbamservice.exe (Intel Corporation) C:\Programme\Intel\Wireless\Bin\RegSrvc.exe (Malwarebytes Corporation) C:\Programme\Malwarebytes' Anti-Malware\mbamgui.exe (TOSHIBA Corp.) C:\Programme\Toshiba\TOSHIBA Applet\TAPPSRV.exe (Intel Corporation) C:\WINDOWS\system32\igfxtray.exe (Intel Corporation) C:\WINDOWS\system32\hkcmd.exe (Intel Corporation) C:\WINDOWS\system32\igfxpers.exe (Synaptics, Inc.) C:\Programme\Synaptics\SynTP\SynTPEnh.exe (Realtek Semiconductor Corp.) C:\WINDOWS\RTHDCPL.EXE (Agere Systems) C:\WINDOWS\AGRSMMSG.exe (Synaptics, Inc.) C:\Programme\Synaptics\SynTP\Toshiba.exe (TOSHIBA) C:\Programme\Toshiba\Toshiba Applet\thotkey.exe (TOSHIBA Corporation) C:\WINDOWS\system32\TPSMain.exe (TOSHIBA CORPORATION) C:\Programme\TOSHIBA\ConfigFree\NDSTray.exe (TOSHIBA Corporation) C:\Programme\TOSHIBA\TOSHIBA Zoom-Dienstprogramm\SmoothView.exe (TOSHIBA Corporation) C:\Programme\TOSHIBA\TOSHIBA Controls\TFncKy.exe (TOSHIBA Corporation) C:\WINDOWS\system32\TDispVol.exe (Sonic Solutions) C:\WINDOWS\System32\DLA\DLACTRLW.EXE (TOSHIBA Corporation) C:\Programme\TOSHIBA\Tvs\TvsTray.exe (Intel Corporation) C:\Programme\Intel\Wireless\bin\ZCfgSvc.exe (TOSHIBA Corporation) C:\WINDOWS\system32\TPSBattM.exe (Intel Corporation) C:\Programme\Intel\Wireless\Bin\ifrmewrk.exe (ScanSoft, Inc.) C:\Programme\ScanSoft\OmniPageSE2.0\OpwareSE2.exe (Avira GmbH) C:\Programme\Avira\AntiVir Desktop\avgnt.exe (RealNetworks, Inc.) C:\Programme\Gemeinsame Dateien\Real\Update_OB\realsched.exe (brother) C:\Programme\Brownie\BrstsWnd.exe (TOSHIBA) C:\Programme\TOSHIBA\TOSCDSPD\toscdspd.exe (Safer-Networking Ltd.) C:\Programme\Spybot - Search & Destroy\TeaTimer.exe (Octoshape ApS) C:\Dokumente und Einstellungen\Raphaelis\Anwendungsdaten\Octoshape\Octoshape Streaming Services\OctoshapeClient.exe (Adobe Systems Inc.) C:\Programme\Adobe\Acrobat 5.0\Distillr\AcroTray.exe (brother) C:\Programme\Brownie\brpjp04a.exe (Intel Corporation) C:\Programme\Intel\Wireless\Bin\Dot1XCfg.exe (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe (Adobe Systems Incorporated) C:\Programme\Gemeinsame Dateien\Adobe\Updater6\Adobe_Updater.exe (Farbar) C:\Dokumente und Einstellungen\Raphaelis\Eigene Dateien\Downloads\FRST(1).exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [igfxhkcmd] - C:\WINDOWS\system32\hkcmd.exe [77824 2005-11-28] (Intel Corporation) HKLM\...\Run: [igfxpers] - C:\WINDOWS\system32\igfxpers.exe [118784 2005-11-28] (Intel Corporation) HKLM\...\Run: [SynTPEnh] - C:\Programme\Synaptics\SynTP\SynTPEnh.exe [761945 2005-12-17] (Synaptics, Inc.) HKLM\...\Run: [RTHDCPL] - C:\WINDOWS\RTHDCPL.EXE [15691264 2005-12-09] (Realtek Semiconductor Corp.) HKLM\...\Run: [AGRSMMSG] - C:\WINDOWS\AGRSMMSG.exe [88203 2005-10-15] (Agere Systems) HKLM\...\Run: [THotkey] - C:\Programme\Toshiba\Toshiba Applet\thotkey.exe [352256 2006-01-05] (TOSHIBA) HKLM\...\Run: [TPSMain] - C:\WINDOWS\system32\TPSMain.exe [266240 2005-08-03] (TOSHIBA Corporation) HKLM\...\Run: [NDSTray.exe] - NDSTray.exe HKLM\...\Run: [SmoothView] - C:\Programme\TOSHIBA\TOSHIBA Zoom-Dienstprogramm\SmoothView.exe [118784 2005-05-13] (TOSHIBA Corporation) HKLM\...\Run: [TFncKy] - TFncKy.exe HKLM\...\Run: [TDispVol] - C:\WINDOWS\system32\TDispVol.exe [73728 2005-09-16] (TOSHIBA Corporation) HKLM\...\Run: [DLA] - C:\WINDOWS\System32\DLA\DLACTRLW.EXE [122940 2005-10-06] (Sonic Solutions) HKLM\...\Run: [Tvs] - C:\Programme\TOSHIBA\Tvs\TvsTray.exe [73728 2005-11-30] (TOSHIBA Corporation) HKLM\...\Run: [IntelZeroConfig] - C:\Programme\Intel\Wireless\bin\ZCfgSvc.exe [667718 2005-12-05] (Intel Corporation) HKLM\...\Run: [IntelWireless] - C:\Programme\Intel\Wireless\Bin\ifrmewrk.exe [602182 2005-11-28] (Intel Corporation) HKLM\...\Run: [NeroFilterCheck] - C:\WINDOWS\system32\NeroCheck.exe [155648 2001-07-09] (Ahead Software Gmbh) HKLM\...\Run: [OpwareSE2] - C:\Programme\ScanSoft\OmniPageSE2.0\OpwareSE2.exe [49152 2003-05-08] (ScanSoft, Inc.) HKLM\...\Run: [CFSServ.exe] - CFSServ.exe -NoClient HKLM\...\Run: [QuickTime Task] - C:\Programme\QuickTime\qttask.exe [286720 2007-12-11] (Apple Inc.) HKLM\...\Run: [Adobe Reader Speed Launcher] - C:\Programme\Adobe\Reader 9.0\Reader\Reader_sl.exe [34672 2008-06-12] (Adobe Systems Incorporated) HKLM\...\Run: [avgnt] - C:\Programme\Avira\AntiVir Desktop\avgnt.exe [281768 2010-11-20] (Avira GmbH) HKLM\...\Run: [TkBellExe] - C:\Programme\Gemeinsame Dateien\Real\Update_OB\realsched.exe [198160 2009-09-16] (RealNetworks, Inc.) HKLM\...\Run: [SunJavaUpdateSched] - C:\Programme\Gemeinsame Dateien\Java\Java Update\jusched.exe [252848 2012-07-03] (Sun Microsystems, Inc.) HKLM\...\Run: [BrStsWnd] - C:\Programme\Brownie\BrstsWnd.exe [3618160 2011-03-25] (brother) Winlogon\Notify\AtiExtEvent: C:\WINDOWS\system32\Ati2evxx.dll (ATI Technologies Inc.) HKU\S-1-5-21-3290459178-3813852024-1158968473-1006\...\Run: [TOSCDSPD] - C:\Programme\TOSHIBA\TOSCDSPD\toscdspd.exe [65536 2005-04-12] (TOSHIBA) HKU\S-1-5-21-3290459178-3813852024-1158968473-1006\...\Run: [Microsoft Works Update Detection] - ࠳粒\WkDetect.exe HKU\S-1-5-21-3290459178-3813852024-1158968473-1006\...\Run: [SpybotSD TeaTimer] - C:\Programme\Spybot - Search & Destroy\TeaTimer.exe [2260480 2009-03-05] (Safer-Networking Ltd.) HKU\S-1-5-21-3290459178-3813852024-1158968473-1006\...\Run: [Octoshape Streaming Services] - C:\Dokumente und Einstellungen\Raphaelis\Anwendungsdaten\Octoshape\Octoshape Streaming Services\OctoshapeClient.exe [107800 2011-03-24] (Octoshape ApS) HKU\S-1-5-21-3290459178-3813852024-1158968473-1006\...\Run: [unyc.exe] - "C:\Dokumente und Einstellungen\Raphaelis\Anwendungsdaten\Uhsa\unyc.exe" Startup: C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart\Acrobat Assistant.lnk ShortcutTarget: Acrobat Assistant.lnk -> C:\Programme\Adobe\Acrobat 5.0\Distillr\AcroTray.exe (Adobe Systems Inc.) Startup: C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart\Microsoft Office.lnk ShortcutTarget: Microsoft Office.lnk -> C:\Programme\Microsoft Office\Office\OSA9.EXE (Microsoft Corporation) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch BHO: Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programme\Gemeinsame Dateien\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated) BHO: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Programme\Gemeinsame Dateien\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated) BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Programme\Real\RealPlayer\rpbrowserrecordplugin.dll (RealPlayer) BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Programme\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited) BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\System32\DLA\DLASHX_W.DLL (Sonic Solutions) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programme\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Programme\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKCU - &Adresse - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation) Toolbar: HKCU - &Links - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) Toolbar: HKCU - No Name - {0B53EAC3-8D69-4B9E-9B19-A37C9A5676A7} - No File DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} hxxp://windowsupdate.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1393274355625 DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} hxxp://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1393274463937 DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0_04-windows-i586.cab DPF: {CAFEEFAC-0015-0000-0004-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0_04-windows-i586.cab DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab Handler: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: ipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Winsock: Catalog5 04 C:\Programme\Bonjour\mdnsNSP.dll File Not found () Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 FireFox: ======== FF ProfilePath: C:\Dokumente und Einstellungen\Raphaelis\Anwendungsdaten\Mozilla\Firefox\Profiles\0wd7yg40.default FF Homepage: hxxp://www.vintagesteel.de/ FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_11_5_502_149.dll () FF Plugin: @java.com/DTPlugin,version=10.13.2 - C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.13.2 - C:\Programme\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @microsoft.com/WPF,version=3.5 - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF Plugin: @real.com/nppl3260;version=6.0.12.448 - C:\Programme\Real\RealPlayer\Netscape6\nppl3260.dll (RealNetworks, Inc.) FF Plugin: @real.com/nprjplug;version=1.0.3.448 - C:\Programme\Real\RealPlayer\Netscape6\nprjplug.dll (RealNetworks, Inc.) FF Plugin: @real.com/nprpjplug;version=6.0.12.448 - C:\Programme\Real\RealPlayer\Netscape6\nprpjplug.dll (RealNetworks, Inc.) FF Plugin HKCU: @octoshape.com/Octoshape Streaming Services,version=1.0 - C:\Dokumente und Einstellungen\Raphaelis\Anwendungsdaten\Octoshape\Octoshape Streaming Services\sua-1312180-0-npoctoshape.dll (Octoshape ApS) FF Plugin ProgramFiles/Appdata: C:\Dokumente und Einstellungen\Raphaelis\Anwendungsdaten\mozilla\plugins\npoctoshape.dll (Octoshape ApS) FF SearchPlugin: C:\Dokumente und Einstellungen\Raphaelis\Anwendungsdaten\Mozilla\Firefox\Profiles\0wd7yg40.default\searchplugins\ixquick-https---deutsch.xml FF SearchPlugin: C:\Programme\mozilla firefox\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Programme\mozilla firefox\searchplugins\eBay-de.xml FF SearchPlugin: C:\Programme\mozilla firefox\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Programme\mozilla firefox\searchplugins\yahoo-de.xml FF Extension: ProxTube - Unblock YouTube - C:\Dokumente und Einstellungen\Raphaelis\Anwendungsdaten\Mozilla\Firefox\Profiles\0wd7yg40.default\Extensions\ich@maltegoetz.de [2013-02-02] FF Extension: YouTube Unblocker - C:\Dokumente und Einstellungen\Raphaelis\Anwendungsdaten\Mozilla\Firefox\Profiles\0wd7yg40.default\Extensions\youtubeunblocker@unblocker.yt.xpi [2013-02-02] FF Extension: Google Analytics Opt-out Browser Add-on - C:\Dokumente und Einstellungen\Raphaelis\Anwendungsdaten\Mozilla\Firefox\Profiles\0wd7yg40.default\Extensions\{6d96bb5e-1175-4ebf-8ab5-5f56f1c79f65}.xpi [2013-03-15] FF HKLM\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\Programme\Real\RealPlayer\browserrecord\firefox\ext FF Extension: RealPlayer Browser Record Plugin - C:\Programme\Real\RealPlayer\browserrecord\firefox\ext [2009-09-16] FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ FF Extension: Microsoft .NET Framework Assistant - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ [] ========================== Services (Whitelisted) ================= R2 AdobeActiveFileMonitor8.0; C:\Programme\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe [169312 2009-10-09] (Adobe Systems Incorporated) R2 AntiVirSchedulerService; C:\Programme\Avira\AntiVir Desktop\sched.exe [136360 2011-10-23] (Avira GmbH) R2 AntiVirService; C:\Programme\Avira\AntiVir Desktop\avguard.exe [269480 2011-10-23] (Avira GmbH) R2 Brother XP spl Service; C:\WINDOWS\system32\brsvc01a.exe [57344 2002-04-12] (brother Industries Ltd) R2 CFSvcs; C:\Programme\TOSHIBA\ConfigFree\CFSvcs.exe [40960 2005-01-18] (TOSHIBA CORPORATION) R2 EvtEng; C:\Programme\Intel\Wireless\Bin\EvtEng.exe [114753 2005-11-28] (Intel Corporation) S3 FLEXnet Licensing Service; C:\Programme\Gemeinsame Dateien\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [867080 2013-05-14] (Acresso Software Inc.) R2 JavaQuickStarterService; C:\Programme\Java\jre7\bin\jqs.exe [170912 2013-02-03] (Oracle Corporation) R2 MBAMScheduler; C:\Programme\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) R2 MBAMService; C:\Programme\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) S3 ose; C:\Programme\Gemeinsame Dateien\Microsoft Shared\Source Engine\OSE.EXE [89136 2003-07-28] (Microsoft Corporation) R2 RegSrvc; C:\Programme\Intel\Wireless\Bin\RegSrvc.exe [217164 2005-11-28] (Intel Corporation) R2 S24EventMonitor; C:\Programme\Intel\Wireless\Bin\S24EvMon.exe [540745 2005-11-28] (Intel Corporation ) R2 TAPPSRV; C:\Programme\Toshiba\TOSHIBA Applet\TAPPSRV.exe [35328 2005-12-20] (TOSHIBA Corp.) S3 MozillaMaintenance; "C:\Programme\Mozilla Maintenance Service\maintenanceservice.exe" [X] ==================== Drivers (Whitelisted) ==================== R2 AegisP; C:\WINDOWS\System32\DRIVERS\AegisP.sys [21275 2006-08-13] (Meetinghouse Data Communications) R1 avgio; C:\Programme\Avira\AntiVir Desktop\avgio.sys [11608 2009-02-13] (Avira GmbH) R2 avgntflt; C:\WINDOWS\System32\DRIVERS\avgntflt.sys [66616 2011-10-23] (Avira GmbH) R1 avipbb; C:\WINDOWS\System32\DRIVERS\avipbb.sys [138192 2011-10-23] (Avira GmbH) R2 DLABOIOM; C:\WINDOWS\System32\DLA\DLABOIOM.SYS [25628 2005-10-06] (Sonic Solutions) R1 DLACDBHM; C:\WINDOWS\System32\Drivers\DLACDBHM.SYS [5628 2005-08-25] (Sonic Solutions) R2 DLADResN; C:\WINDOWS\System32\DLA\DLADResN.SYS [2496 2005-10-06] (Sonic Solutions) R2 DLAIFS_M; C:\WINDOWS\System32\DLA\DLAIFS_M.SYS [86524 2005-10-06] (Sonic Solutions) R2 DLAOPIOM; C:\WINDOWS\System32\DLA\DLAOPIOM.SYS [14684 2005-10-06] (Sonic Solutions) R2 DLAPoolM; C:\WINDOWS\System32\DLA\DLAPoolM.SYS [6364 2005-10-06] (Sonic Solutions) R1 DLARTL_N; C:\WINDOWS\System32\Drivers\DLARTL_N.SYS [22684 2005-08-25] (Sonic Solutions) R2 DLAUDFAM; C:\WINDOWS\System32\DLA\DLAUDFAM.SYS [94332 2005-10-06] (Sonic Solutions) R2 DLAUDF_M; C:\WINDOWS\System32\DLA\DLAUDF_M.SYS [87036 2005-10-06] (Sonic Solutions) R2 DRVNDDM; C:\WINDOWS\System32\Drivers\DRVNDDM.SYS [40544 2005-08-12] (Sonic Solutions) S3 HPZid412; C:\WINDOWS\System32\DRIVERS\HPZid412.sys [49664 2006-04-13] (HP) S3 HPZipr12; C:\WINDOWS\System32\DRIVERS\HPZipr12.sys [16496 2006-04-13] (HP) S3 HPZius12; C:\WINDOWS\System32\DRIVERS\HPZius12.sys [21568 2006-04-13] (HP) R3 Iviaspi; C:\WINDOWS\System32\drivers\iviaspi.sys [21060 2003-09-10] (InterVideo, Inc.) S3 k750bus; C:\WINDOWS\System32\DRIVERS\k750bus.sys [55216 2005-02-11] (MCCI) S3 k750mdfl; C:\WINDOWS\System32\DRIVERS\k750mdfl.sys [6576 2005-02-11] (MCCI) S3 k750mdm; C:\WINDOWS\System32\DRIVERS\k750mdm.sys [89872 2005-02-11] (MCCI) S3 k750mgmt; C:\WINDOWS\System32\DRIVERS\k750mgmt.sys [81728 2005-02-11] (MCCI) R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [22856 2013-04-04] (Malwarebytes Corporation) R2 Netdevio; C:\WINDOWS\System32\DRIVERS\netdevio.sys [12032 2003-01-29] (TOSHIBA Corporation.) R3 Pfc; C:\WINDOWS\System32\drivers\pfc.sys [10368 2003-09-19] (Padus, Inc.) R2 s24trans; C:\WINDOWS\System32\DRIVERS\s24trans.sys [13568 2005-11-28] (Intel Corporation) R3 TVALD; C:\WINDOWS\System32\DRIVERS\NBSMI.sys [6144 2005-10-20] (Toshiba Corporation) R3 Tvs; C:\WINDOWS\System32\DRIVERS\Tvs.sys [43392 2005-11-30] (TOSHIBA Corporation) R3 w39n51; C:\WINDOWS\System32\DRIVERS\w39n51.sys [1428096 2005-12-05] (Intel® Corporation) S3 catchme; \??\C:\DOKUME~1\RAPHAE~1\LOKALE~1\Temp\catchme.sys [X] S4 IntelIde; No ImagePath U5 ScsiPort; C:\WINDOWS\system32\drivers\scsiport.sys [96384 2008-04-14] (Microsoft Corporation) U5 ssmdrv; C:\Windows\System32\Drivers\ssmdrv.sys [28520 2009-05-11] (Avira GmbH) U3 TlntSvr; U5 Tosrfcom; C:\Windows\System32\Drivers\Tosrfcom.sys [64896 2005-08-01] (TOSHIBA Corporation) S3 WDC_SAM; system32\DRIVERS\wdcsam.sys [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-03-02 00:26 - 2014-03-02 00:26 - 00000000 __SHD () C:\Dokumente und Einstellungen\NetworkService\IETldCache 2014-03-02 00:14 - 2014-03-02 00:14 - 00000783 _____ () C:\Dokumente und Einstellungen\Raphaelis\Startmenü\Programme\Internet Explorer.lnk 2014-03-02 00:13 - 2014-03-02 00:13 - 00000000 __SHD () C:\Dokumente und Einstellungen\Raphaelis\IETldCache 2014-03-02 00:08 - 2014-03-02 00:09 - 00065536 _____ () C:\WINDOWS\system32\config\Internet.evt 2014-03-02 00:04 - 2014-03-02 00:09 - 00042658 _____ () C:\WINDOWS\ie8.log 2014-03-02 00:04 - 2014-03-02 00:09 - 00000000 __HDC () C:\WINDOWS\ie8 2014-03-01 23:49 - 2014-03-02 00:09 - 00029693 _____ () C:\WINDOWS\ie8_main.log 2014-03-01 23:22 - 2014-03-01 23:22 - 00000772 _____ () C:\Dokumente und Einstellungen\LocalService\Startmenü\Programme\Windows Media Player.lnk 2014-03-01 23:22 - 2014-03-01 23:22 - 00000226 _____ () C:\WINDOWS\DtcInstall.log 2014-03-01 23:16 - 2014-03-01 23:16 - 00000187 _____ () C:\WINDOWS\spupdsvc.log.1.log 2014-03-01 23:16 - 2014-03-01 23:16 - 00000090 _____ () C:\WINDOWS\system32\spupdwxp.log 2014-03-01 23:04 - 2014-03-02 00:15 - 00038492 _____ () C:\WINDOWS\spupdsvc.log 2014-03-01 23:04 - 2014-03-01 23:04 - 00000311 _____ () C:\WINDOWS\sessmgr.setup.log 2014-03-01 23:04 - 2014-03-01 23:04 - 00000173 _____ () C:\WINDOWS\cmsetacl.log 2014-03-01 23:02 - 2008-04-14 07:53 - 00023040 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\ativmvxx.ax 2014-03-01 23:02 - 2008-04-14 07:53 - 00009728 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\ativdaxx.ax 2014-03-01 23:02 - 2008-04-14 07:52 - 01306624 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msxml6.dll 2014-03-01 23:02 - 2008-04-14 07:52 - 00870784 ____N (ATI Technologies Inc. ) C:\WINDOWS\system32\ati3d1ag.dll 2014-03-01 23:02 - 2008-04-14 07:52 - 00651264 ____N (Microsoft Corporation) C:\WINDOWS\system32\dot3ui.dll 2014-03-01 23:02 - 2008-04-14 07:52 - 00377984 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\ati2dvaa.dll 2014-03-01 23:02 - 2008-04-14 07:52 - 00233472 ____N (Microsoft Corporation) C:\WINDOWS\system32\azroles.dll 2014-03-01 23:02 - 2008-04-14 07:52 - 00184832 ____N (Microsoft Corporation) C:\WINDOWS\system32\eapp3hst.dll 2014-03-01 23:02 - 2008-04-14 07:52 - 00182272 ____N (Microsoft Corporation) C:\WINDOWS\system32\eapphost.dll 2014-03-01 23:02 - 2008-04-14 07:52 - 00136192 ____N (Microsoft Corporation) C:\WINDOWS\system32\aaclient.dll 2014-03-01 23:02 - 2008-04-14 07:52 - 00133120 ____N (Microsoft Corporation) C:\WINDOWS\system32\dot3svc.dll 2014-03-01 23:02 - 2008-04-14 07:52 - 00126976 ____N (Microsoft Corporation) C:\WINDOWS\system32\eappcfg.dll 2014-03-01 23:02 - 2008-04-14 07:52 - 00095232 ____N (Microsoft Corporation) C:\WINDOWS\system32\eappgnui.dll 2014-03-01 23:02 - 2008-04-14 07:52 - 00062976 ____N (Microsoft Corporation) C:\WINDOWS\system32\dot3cfg.dll 2014-03-01 23:02 - 2008-04-14 07:52 - 00061440 ____N (Microsoft Corporation) C:\WINDOWS\system32\kmsvc.dll 2014-03-01 23:02 - 2008-04-14 07:52 - 00059392 ____N (Microsoft Corporation) C:\WINDOWS\system32\eapqec.dll 2014-03-01 23:02 - 2008-04-14 07:52 - 00056832 ____N (Microsoft Corporation) C:\WINDOWS\system32\dot3msm.dll 2014-03-01 23:02 - 2008-04-14 07:52 - 00048640 ____N (Microsoft Corporation) C:\WINDOWS\system32\dhcpqec.dll 2014-03-01 23:02 - 2008-04-14 07:52 - 00040960 ____N (Microsoft Corporation) C:\WINDOWS\system32\eappprxy.dll 2014-03-01 23:02 - 2008-04-14 07:52 - 00039936 ____N (Microsoft Corporation) C:\WINDOWS\system32\dot3gpclnt.dll 2014-03-01 23:02 - 2008-04-14 07:52 - 00039936 ____N (Microsoft Corporation) C:\WINDOWS\system32\dimsroam.dll 2014-03-01 23:02 - 2008-04-14 07:52 - 00033792 ____N (Microsoft Corporation) C:\WINDOWS\system32\eapsvc.dll 2014-03-01 23:02 - 2008-04-14 07:52 - 00032768 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\ativtmxx.dll 2014-03-01 23:02 - 2008-04-14 07:52 - 00032285 ____N (Conexant Systems, Inc.) C:\WINDOWS\system32\hsfcisp2.dll 2014-03-01 23:02 - 2008-04-14 07:52 - 00030720 ____N (Microsoft Corporation) C:\WINDOWS\system32\eapolqec.dll 2014-03-01 23:02 - 2008-04-14 07:52 - 00026112 ____N (Microsoft Corporation) C:\WINDOWS\system32\dot3api.dll 2014-03-01 23:02 - 2008-04-14 07:52 - 00019456 ____N (Microsoft Corporation) C:\WINDOWS\system32\dimsntfy.dll 2014-03-01 23:02 - 2008-04-14 07:52 - 00012800 ____N (Microsoft Corporation) C:\WINDOWS\system32\credssp.dll 2014-03-01 23:02 - 2008-04-14 07:52 - 00009216 ____N (Microsoft Corporation) C:\WINDOWS\system32\dot3dlg.dll 2014-03-01 23:02 - 2008-04-14 07:52 - 00007168 ____N (Microsoft Corporation) C:\WINDOWS\system32\bitsprx4.dll 2014-03-01 23:02 - 2008-04-14 07:50 - 00006144 ____N (Microsoft Corporation) C:\WINDOWS\system32\kbdpash.dll 2014-03-01 23:02 - 2008-04-14 07:50 - 00006144 ____N (Microsoft Corporation) C:\WINDOWS\system32\kbdnepr.dll 2014-03-01 23:02 - 2008-04-14 07:50 - 00006144 ____N (Microsoft Corporation) C:\WINDOWS\system32\kbdiultn.dll 2014-03-01 23:02 - 2008-04-14 07:50 - 00006144 ____N (Microsoft Corporation) C:\WINDOWS\system32\kbdbhc.dll 2014-03-01 23:02 - 2008-04-14 07:27 - 00093184 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msxml6r.dll 2014-03-01 23:01 - 2014-03-01 23:01 - 00000000 ____D () C:\WINDOWS\system32\de 2014-03-01 23:01 - 2014-03-01 23:01 - 00000000 ____D () C:\WINDOWS\system32\bits 2014-03-01 23:01 - 2014-03-01 23:01 - 00000000 ____D () C:\WINDOWS\l2schemas 2014-03-01 23:01 - 2009-01-07 18:21 - 00121856 _____ (Microsoft Corporation) C:\WINDOWS\system32\xmllite.dll 2014-03-01 23:01 - 2008-04-14 07:53 - 00073796 ____N (Smart Link) C:\WINDOWS\system32\slserv.exe 2014-03-01 23:01 - 2008-04-14 07:53 - 00060416 ____N (Microsoft Corporation) C:\WINDOWS\system32\tzchange.exe 2014-03-01 23:01 - 2008-04-14 07:53 - 00032866 ____N (Smart Link) C:\WINDOWS\system32\slrundll.exe 2014-03-01 23:01 - 2008-04-14 07:53 - 00032866 ____N (Smart Link) C:\WINDOWS\slrundll.exe 2014-03-01 23:01 - 2008-04-14 07:53 - 00032768 ____N (Microsoft Corporation) C:\WINDOWS\system32\setupn.exe 2014-03-01 23:01 - 2008-04-14 07:53 - 00028672 ____N (Microsoft Corporation) C:\WINDOWS\system32\vidcap.ax 2014-03-01 23:01 - 2008-04-14 07:53 - 00028672 ____N (Microsoft Corporation) C:\WINDOWS\system32\verclsid.exe 2014-03-01 23:01 - 2008-04-14 07:52 - 04274816 ____N (NVIDIA Corporation) C:\WINDOWS\system32\nv4_disp.dll 2014-03-01 23:01 - 2008-04-14 07:52 - 01737856 ____N (Matrox Graphics Inc.) C:\WINDOWS\system32\mtxparhd.dll 2014-03-01 23:01 - 2008-04-14 07:52 - 00397312 ____N (Microsoft Corporation) C:\WINDOWS\system32\mmcex.dll 2014-03-01 23:01 - 2008-04-14 07:52 - 00397056 ____N (S3 Graphics, Inc.) C:\WINDOWS\system32\s3gnb.dll 2014-03-01 23:01 - 2008-04-14 07:52 - 00294400 ____N (Microsoft Corporation) C:\WINDOWS\system32\qagentrt.dll 2014-03-01 23:01 - 2008-04-14 07:52 - 00290304 ____N (Microsoft Corporation) C:\WINDOWS\system32\rhttpaa.dll 2014-03-01 23:01 - 2008-04-14 07:52 - 00286792 ____N (Smart Link) C:\WINDOWS\system32\slextspk.dll 2014-03-01 23:01 - 2008-04-14 07:52 - 00198656 ____N (Microsoft Corporation) C:\WINDOWS\system32\napmontr.dll 2014-03-01 23:01 - 2008-04-14 07:52 - 00188508 ____N (Smart Link) C:\WINDOWS\system32\slgen.dll 2014-03-01 23:01 - 2008-04-14 07:52 - 00184320 ____N (Microsoft Corporation) C:\WINDOWS\system32\microsoft.managementconsole.dll 2014-03-01 23:01 - 2008-04-14 07:52 - 00177664 ____N (Microsoft Corporation) C:\WINDOWS\system32\napstat.exe 2014-03-01 23:01 - 2008-04-14 07:52 - 00155136 ____N (Microsoft Corporation) C:\WINDOWS\system32\mssha.dll 2014-03-01 23:01 - 2008-04-14 07:52 - 00151040 ____N (Microsoft Corporation) C:\WINDOWS\system32\qagent.dll 2014-03-01 23:01 - 2008-04-14 07:52 - 00145408 ____N (Microsoft Corporation) C:\WINDOWS\system32\onex.dll 2014-03-01 23:01 - 2008-04-14 07:52 - 00106496 ____N (Microsoft Corporation) C:\WINDOWS\system32\mmcfxcommon.dll 2014-03-01 23:01 - 2008-04-14 07:52 - 00086016 ____N (Conexant) C:\WINDOWS\system32\mdmxsdk.dll 2014-03-01 23:01 - 2008-04-14 07:52 - 00076800 ____N (Microsoft Corporation) C:\WINDOWS\system32\qutil.dll 2014-03-01 23:01 - 2008-04-14 07:52 - 00073832 ____N (Smart Link) C:\WINDOWS\system32\slcoinst.dll 2014-03-01 23:01 - 2008-04-14 07:52 - 00069120 ____N (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll 2014-03-01 23:01 - 2008-04-14 07:52 - 00062464 ____N (Microsoft Corporation) C:\WINDOWS\system32\qcliprov.dll 2014-03-01 23:01 - 2008-04-14 07:52 - 00061952 ____N (Microsoft Corporation) C:\WINDOWS\system32\rasqec.dll 2014-03-01 23:01 - 2008-04-14 07:52 - 00053248 ____N (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll 2014-03-01 23:01 - 2008-04-14 07:52 - 00050688 ____N (Microsoft Corporation) C:\WINDOWS\system32\tspkg.dll 2014-03-01 23:01 - 2008-04-14 07:52 - 00037376 ____N (Microsoft Corporation) C:\WINDOWS\system32\l2gpstore.dll 2014-03-01 23:01 - 2008-04-14 07:52 - 00033792 ____N (Microsoft Corporation) C:\WINDOWS\system32\mmcperf.exe 2014-03-01 23:01 - 2008-04-14 07:52 - 00030208 ____N (Microsoft Corporation) C:\WINDOWS\system32\napipsec.dll 2014-03-01 23:01 - 2008-04-14 07:26 - 00081408 ____N (Microsoft Corporation) C:\WINDOWS\system32\msshavmsg.dll 2014-03-01 22:53 - 2014-03-01 23:02 - 00000000 ____D () C:\WINDOWS\ServicePackFiles 2014-03-01 22:44 - 2014-03-02 00:08 - 00111672 _____ () C:\WINDOWS\updspapi.log 2014-03-01 22:44 - 2008-04-14 07:52 - 00025471 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\atv04nt5.dll 2014-03-01 22:44 - 2008-04-14 07:52 - 00021183 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\atv01nt5.dll 2014-03-01 22:44 - 2008-04-14 07:52 - 00017279 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\atv10nt5.dll 2014-03-01 22:44 - 2008-04-14 07:52 - 00015423 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\ch7xxnt5.dll 2014-03-01 22:44 - 2008-04-14 07:52 - 00014143 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\atv06nt5.dll 2014-03-01 22:44 - 2008-04-14 07:52 - 00011359 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\atv02nt5.dll 2014-03-01 22:44 - 2008-04-14 07:52 - 00011325 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\vchnt5.dll 2014-03-01 22:44 - 2008-04-14 07:52 - 00004255 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\adv01nt5.dll 2014-03-01 22:44 - 2008-04-14 07:52 - 00003967 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\adv02nt5.dll 2014-03-01 22:44 - 2008-04-14 07:52 - 00003901 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\siint5.dll 2014-03-01 22:44 - 2008-04-14 07:52 - 00003775 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\adv11nt5.dll 2014-03-01 22:44 - 2008-04-14 07:52 - 00003711 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\adv09nt5.dll 2014-03-01 22:44 - 2008-04-14 07:52 - 00003647 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\adv07nt5.dll 2014-03-01 22:44 - 2008-04-14 07:52 - 00003615 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\adv05nt5.dll 2014-03-01 22:44 - 2008-04-14 07:52 - 00003135 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\adv08nt5.dll 2014-03-01 22:44 - 2008-04-14 07:24 - 00025856 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidbth.sys 2014-03-01 22:44 - 2008-04-14 07:22 - 00273920 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys 2014-03-01 22:44 - 2008-04-14 07:21 - 00327168 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati2mtaa.sys 2014-03-01 22:44 - 2008-04-14 00:26 - 00030592 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rndismpx.sys 2014-03-01 22:44 - 2008-04-14 00:26 - 00012800 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usb8023x.sys 2014-03-01 22:44 - 2008-04-14 00:21 - 00101120 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthpan.sys 2014-03-01 22:44 - 2008-04-14 00:16 - 00121984 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbvideo.sys 2014-03-01 22:44 - 2008-04-14 00:16 - 00059136 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rfcomm.sys 2014-03-01 22:44 - 2008-04-14 00:16 - 00037888 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthmodem.sys 2014-03-01 22:44 - 2008-04-14 00:16 - 00036480 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthprint.sys 2014-03-01 22:44 - 2008-04-14 00:16 - 00018944 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthusb.sys 2014-03-01 22:44 - 2008-04-14 00:16 - 00017024 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthenum.sys 2014-03-01 22:44 - 2008-04-14 00:15 - 00019200 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidir.sys 2014-03-01 22:44 - 2008-04-14 00:13 - 00014208 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wacompen.sys 2014-03-01 22:44 - 2008-04-14 00:13 - 00012672 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mutohpen.sys 2014-03-01 22:44 - 2008-04-14 00:10 - 00010240 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sffp_mmc.sys 2014-03-01 22:44 - 2008-04-14 00:06 - 00046464 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\gagp30kx.sys 2014-03-01 22:44 - 2008-04-14 00:06 - 00044928 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\agpcpq.sys 2014-03-01 22:44 - 2008-04-14 00:06 - 00044672 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\uagp35.sys 2014-03-01 22:44 - 2008-04-14 00:06 - 00043008 ____N (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\amdagp.sys 2014-03-01 22:44 - 2008-04-14 00:06 - 00042752 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\alim1541.sys 2014-03-01 22:44 - 2008-04-14 00:06 - 00042368 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\agp440.sys 2014-03-01 22:44 - 2008-04-14 00:06 - 00042240 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\viaagp.sys 2014-03-01 22:44 - 2008-04-14 00:06 - 00040960 ____N (Silicon Integrated Systems Corporation) C:\WINDOWS\system32\Drivers\sisagp.sys 2014-03-01 22:44 - 2008-04-14 00:06 - 00005888 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\smbali.sys 2014-03-01 22:44 - 2008-04-13 23:53 - 01309184 ____N (Smart Link) C:\WINDOWS\system32\Drivers\mtlstrm.sys 2014-03-01 22:44 - 2008-04-13 23:53 - 01041536 ____N (Conexant Systems, Inc.) C:\WINDOWS\system32\Drivers\hsfdpsp2.sys 2014-03-01 22:44 - 2008-04-13 23:53 - 00685056 ____N (Conexant Systems, Inc.) C:\WINDOWS\system32\Drivers\hsfcxts2.sys 2014-03-01 22:44 - 2008-04-13 23:53 - 00404990 ____N (Smart Link) C:\WINDOWS\system32\Drivers\slntamr.sys 2014-03-01 22:44 - 2008-04-13 23:53 - 00220032 ____N (Conexant Systems, Inc.) C:\WINDOWS\system32\Drivers\hsfbs2s2.sys 2014-03-01 22:44 - 2008-04-13 23:53 - 00180360 ____N (Smart Link) C:\WINDOWS\system32\Drivers\ntmtlfax.sys 2014-03-01 22:44 - 2008-04-13 23:53 - 00129535 ____N (Smart Link) C:\WINDOWS\system32\Drivers\slnt7554.sys 2014-03-01 22:44 - 2008-04-13 23:53 - 00126686 ____N (Smart Link) C:\WINDOWS\system32\Drivers\mtlmnt5.sys 2014-03-01 22:44 - 2008-04-13 23:53 - 00095424 ____N (Smart Link) C:\WINDOWS\system32\Drivers\slnthal.sys 2014-03-01 22:44 - 2008-04-13 23:53 - 00013776 ____N (Smart Link) C:\WINDOWS\system32\Drivers\recagent.sys 2014-03-01 22:44 - 2008-04-13 23:53 - 00013240 ____N (Smart Link) C:\WINDOWS\system32\Drivers\slwdmsup.sys 2014-03-01 22:44 - 2008-04-13 23:53 - 00011868 ____N (Conexant) C:\WINDOWS\system32\Drivers\mdmxsdk.sys 2014-03-01 22:44 - 2008-04-13 22:04 - 01897408 ____N (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nv4_mini.sys 2014-03-01 22:44 - 2008-04-13 22:04 - 00452736 ____N (Matrox Graphics Inc.) C:\WINDOWS\system32\Drivers\mtxparhm.sys 2014-03-01 22:44 - 2008-04-13 22:04 - 00166912 ____N (S3 Graphics, Inc.) C:\WINDOWS\system32\Drivers\s3gnbm.sys 2014-03-01 22:44 - 2008-04-13 22:04 - 00104960 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\atinrvxx.sys 2014-03-01 22:44 - 2008-04-13 22:04 - 00073216 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\atintuxx.sys 2014-03-01 22:44 - 2008-04-13 22:04 - 00063663 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati1rvxx.sys 2014-03-01 22:44 - 2008-04-13 22:04 - 00063488 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\atinxsxx.sys 2014-03-01 22:44 - 2008-04-13 22:04 - 00057856 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\atinbtxx.sys 2014-03-01 22:44 - 2008-04-13 22:04 - 00056623 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati1btxx.sys 2014-03-01 22:44 - 2008-04-13 22:04 - 00052224 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\atinraxx.sys 2014-03-01 22:44 - 2008-04-13 22:04 - 00036463 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati1tuxx.sys 2014-03-01 22:44 - 2008-04-13 22:04 - 00034735 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati1xsxx.sys 2014-03-01 22:44 - 2008-04-13 22:04 - 00031744 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\atinxbxx.sys 2014-03-01 22:44 - 2008-04-13 22:04 - 00030671 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati1raxx.sys 2014-03-01 22:44 - 2008-04-13 22:04 - 00029455 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati1xbxx.sys 2014-03-01 22:44 - 2008-04-13 22:04 - 00028672 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\atinsnxx.sys 2014-03-01 22:44 - 2008-04-13 22:04 - 00026367 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati1snxx.sys 2014-03-01 22:44 - 2008-04-13 22:04 - 00025471 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\watv10nt.sys 2014-03-01 22:44 - 2008-04-13 22:04 - 00022271 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\watv06nt.sys 2014-03-01 22:44 - 2008-04-13 22:04 - 00021343 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati1ttxx.sys 2014-03-01 22:44 - 2008-04-13 22:04 - 00014336 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\atinpdxx.sys 2014-03-01 22:44 - 2008-04-13 22:04 - 00013824 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\atinttxx.sys 2014-03-01 22:44 - 2008-04-13 22:04 - 00013824 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\atinmdxx.sys 2014-03-01 22:44 - 2008-04-13 22:04 - 00012047 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati1pdxx.sys 2014-03-01 22:44 - 2008-04-13 22:04 - 00011935 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\wadv11nt.sys 2014-03-01 22:44 - 2008-04-13 22:04 - 00011871 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\wadv09nt.sys 2014-03-01 22:44 - 2008-04-13 22:04 - 00011807 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\wadv07nt.sys 2014-03-01 22:44 - 2008-04-13 22:04 - 00011615 ____N (ATI Technologies Inc.) C:\WINDOWS\system32\Drivers\ati1mdxx.sys 2014-03-01 22:44 - 2008-04-13 22:04 - 00011295 ____N (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\wadv08nt.sys 2014-03-01 22:44 - 2007-04-02 21:36 - 00129045 ____N () C:\WINDOWS\system32\Drivers\cxthsfs2.cty 2014-03-01 22:44 - 2006-12-29 20:21 - 00064352 ____N () C:\WINDOWS\system32\Drivers\ativmc20.cod 2014-03-01 22:44 - 2006-12-29 20:02 - 00067866 ____N () C:\WINDOWS\system32\Drivers\netwlan5.img 2014-03-01 22:40 - 2014-03-02 00:09 - 00006134 _____ () C:\WINDOWS\tsoc.log 2014-03-01 22:40 - 2014-03-02 00:09 - 00005571 _____ () C:\WINDOWS\comsetup.log 2014-03-01 22:40 - 2014-03-02 00:09 - 00003120 _____ () C:\WINDOWS\ntdtcsetup.log 2014-03-01 22:40 - 2014-03-02 00:09 - 00001355 _____ () C:\WINDOWS\imsins.log 2014-03-01 22:40 - 2014-03-02 00:09 - 00000845 _____ () C:\WINDOWS\ocmsn.log 2014-03-01 22:40 - 2014-03-02 00:09 - 00000771 _____ () C:\WINDOWS\msgsocm.log 2014-03-01 22:40 - 2006-12-29 00:31 - 00019569 _____ () C:\WINDOWS\002804_.tmp 2014-03-01 22:39 - 2014-03-02 00:09 - 00018548 _____ () C:\WINDOWS\FaxSetup.log 2014-03-01 22:39 - 2014-03-02 00:09 - 00008777 _____ () C:\WINDOWS\ocgen.log 2014-03-01 22:39 - 2014-03-02 00:09 - 00002132 _____ () C:\WINDOWS\iis6.log 2014-03-01 22:29 - 2014-03-01 22:39 - 00000000 __HDC () C:\WINDOWS\$NtServicePackUninstall$ 2014-03-01 22:29 - 2014-03-01 22:29 - 00000597 _____ () C:\WINDOWS\medctroc.Log 2014-03-01 21:59 - 2014-03-01 23:10 - 00477852 _____ () C:\WINDOWS\svcpack.log 2014-02-27 16:13 - 2014-02-27 16:13 - 00000000 ____D () C:\Programme\Malwarebytes' Anti-Malware 2014-02-27 16:13 - 2014-02-27 16:13 - 00000000 ____D () C:\Dokumente und Einstellungen\Raphaelis\Anwendungsdaten\Malwarebytes 2014-02-27 16:13 - 2014-02-27 16:13 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Malwarebytes' Anti-Malware 2014-02-27 16:13 - 2013-04-04 14:50 - 00022856 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys 2014-02-25 20:35 - 2014-03-02 17:21 - 00000000 ____D () C:\FRST 2014-02-25 19:07 - 2014-02-25 19:07 - 00001138 _____ () C:\Dokumente und Einstellungen\Raphaelis\Desktop\JRT.txt 2014-02-25 19:03 - 2014-02-25 19:03 - 00000000 ____D () C:\WINDOWS\ERUNT 2014-02-25 18:17 - 2014-02-25 18:21 - 00000000 ____D () C:\AdwCleaner 2014-02-24 00:38 - 2014-02-25 00:10 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Malwarebytes' Anti-Malware (portable) 2014-02-24 00:38 - 2014-02-24 00:38 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Malwarebytes 2014-02-24 00:28 - 2014-02-24 22:06 - 00052312 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2014-02-23 15:33 - 2014-02-23 15:33 - 00000532 _____ () C:\Dokumente und Einstellungen\Raphaelis\Eigene Dateien\spider.sav 2014-02-22 17:50 - 2014-02-22 17:50 - 00000000 _RSHD () C:\cmdcons 2014-02-22 17:50 - 2006-08-13 15:34 - 00000211 _____ () C:\Boot.bak 2014-02-22 17:50 - 2004-08-03 23:00 - 00262448 __RSH () C:\cmldr 2014-02-22 16:44 - 2011-06-26 07:45 - 00256000 _____ () C:\WINDOWS\PEV.exe 2014-02-22 16:44 - 2010-11-07 18:20 - 00208896 _____ () C:\WINDOWS\MBR.exe 2014-02-22 16:44 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\WINDOWS\NIRCMD.exe 2014-02-22 16:44 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\WINDOWS\SWREG.exe 2014-02-22 16:44 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\WINDOWS\SWSC.exe 2014-02-22 16:44 - 2000-08-31 01:00 - 00212480 _____ (SteelWerX) C:\WINDOWS\SWXCACLS.exe 2014-02-22 16:44 - 2000-08-31 01:00 - 00098816 _____ () C:\WINDOWS\sed.exe 2014-02-22 16:44 - 2000-08-31 01:00 - 00080412 _____ () C:\WINDOWS\grep.exe 2014-02-22 16:44 - 2000-08-31 01:00 - 00068096 _____ () C:\WINDOWS\zip.exe 2014-02-22 16:41 - 2014-02-22 18:09 - 00000000 ____D () C:\Qoobox 2014-02-22 16:41 - 2014-02-22 16:41 - 00000000 ___HD () C:\Dokumente und Einstellungen\Raphaelis\Netzwerkumgebung 2014-02-22 16:39 - 2014-02-22 18:05 - 00000000 ____D () C:\WINDOWS\erdnt 2014-02-19 21:59 - 2014-02-19 21:59 - 00000000 ____D () C:\Programme\7-Zip 2014-02-19 21:59 - 2014-02-19 21:59 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\7-Zip 2014-02-18 19:14 - 2014-02-18 19:14 - 00000000 _____ () C:\Dokumente und Einstellungen\Raphaelis\defogger_reenable 2014-02-18 19:03 - 2014-02-18 19:03 - 00000000 ____D () C:\Dokumente und Einstellungen\Raphaelis\Eigene Dateien\My Received Files 2014-02-10 23:42 - 2014-02-10 23:36 - 00450749 ____R () C:\WINDOWS\system32\Drivers\etc\hosts.20140210-234203.backup 2014-02-10 23:36 - 2011-10-23 19:53 - 00438076 ____R () C:\WINDOWS\system32\Drivers\etc\hosts.20140210-233642.backup 2014-02-10 19:47 - 2014-02-10 19:47 - 00000702 _____ () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Mozilla Firefox.lnk 2014-02-09 18:31 - 2014-02-18 23:51 - 00000000 ____D () C:\Dokumente und Einstellungen\Raphaelis\Anwendungsdaten\Ymoszi ==================== One Month Modified Files and Folders ======= 2014-03-02 17:21 - 2014-02-25 20:35 - 00000000 ____D () C:\FRST 2014-03-02 13:50 - 2013-09-30 20:42 - 00191705 _____ () C:\WINDOWS\setupapi.log 2014-03-02 12:22 - 2013-09-30 20:44 - 01225282 _____ () C:\WINDOWS\WindowsUpdate.log 2014-03-02 12:12 - 2006-08-14 22:50 - 00000322 _____ () C:\WINDOWS\Brownie.ini 2014-03-02 12:12 - 2006-01-16 14:17 - 00000000 ____D () C:\WINDOWS\system32\Lang 2014-03-02 12:09 - 2006-01-16 12:48 - 00000159 _____ () C:\WINDOWS\wiadebug.log 2014-03-02 12:09 - 2006-01-16 12:48 - 00000050 _____ () C:\WINDOWS\wiaservc.log 2014-03-02 12:08 - 2006-01-16 12:56 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 2014-03-02 03:12 - 2006-01-16 12:56 - 00032536 _____ () C:\WINDOWS\SchedLgU.Txt 2014-03-02 03:11 - 2006-08-13 15:35 - 00000300 ___SH () C:\Dokumente und Einstellungen\Raphaelis\ntuser.ini 2014-03-02 01:58 - 2011-01-04 19:59 - 00000000 ____D () C:\Dokumente und Einstellungen\Raphaelis\Anwendungsdaten\vlc 2014-03-02 00:58 - 2006-01-16 12:46 - 01182114 _____ () C:\WINDOWS\system32\PerfStringBackup.INI 2014-03-02 00:26 - 2014-03-02 00:26 - 00000000 __SHD () C:\Dokumente und Einstellungen\NetworkService\IETldCache 2014-03-02 00:15 - 2014-03-01 23:04 - 00038492 _____ () C:\WINDOWS\spupdsvc.log 2014-03-02 00:14 - 2014-03-02 00:14 - 00000783 _____ () C:\Dokumente und Einstellungen\Raphaelis\Startmenü\Programme\Internet Explorer.lnk 2014-03-02 00:14 - 2006-08-13 15:35 - 00000000 ___RD () C:\Dokumente und Einstellungen\Raphaelis\Startmenü\Programme\Zubehör 2014-03-02 00:14 - 2006-08-13 15:35 - 00000000 ___RD () C:\Dokumente und Einstellungen\Raphaelis\Startmenü\Programme 2014-03-02 00:13 - 2014-03-02 00:13 - 00000000 __SHD () C:\Dokumente und Einstellungen\Raphaelis\IETldCache 2014-03-02 00:13 - 2006-08-13 15:35 - 00000000 ___RD () C:\Dokumente und Einstellungen\Raphaelis\Eigene Dateien\Eigene Musik 2014-03-02 00:13 - 2006-08-13 15:35 - 00000000 ___RD () C:\Dokumente und Einstellungen\Raphaelis\Eigene Dateien\Eigene Bilder 2014-03-02 00:13 - 2006-08-13 15:35 - 00000000 ____D () C:\Dokumente und Einstellungen\Raphaelis 2014-03-02 00:11 - 2013-06-27 18:22 - 00000000 ____D () C:\WINDOWS\system32\de-DE 2014-03-02 00:11 - 2006-01-16 13:41 - 00000000 ____D () C:\WINDOWS\Help 2014-03-02 00:09 - 2014-03-02 00:08 - 00065536 _____ () C:\WINDOWS\system32\config\Internet.evt 2014-03-02 00:09 - 2014-03-02 00:04 - 00042658 _____ () C:\WINDOWS\ie8.log 2014-03-02 00:09 - 2014-03-02 00:04 - 00000000 __HDC () C:\WINDOWS\ie8 2014-03-02 00:09 - 2014-03-01 23:49 - 00029693 _____ () C:\WINDOWS\ie8_main.log 2014-03-02 00:09 - 2014-03-01 22:40 - 00006134 _____ () C:\WINDOWS\tsoc.log 2014-03-02 00:09 - 2014-03-01 22:40 - 00005571 _____ () C:\WINDOWS\comsetup.log 2014-03-02 00:09 - 2014-03-01 22:40 - 00003120 _____ () C:\WINDOWS\ntdtcsetup.log 2014-03-02 00:09 - 2014-03-01 22:40 - 00001355 _____ () C:\WINDOWS\imsins.log 2014-03-02 00:09 - 2014-03-01 22:40 - 00000845 _____ () C:\WINDOWS\ocmsn.log 2014-03-02 00:09 - 2014-03-01 22:40 - 00000771 _____ () C:\WINDOWS\msgsocm.log 2014-03-02 00:09 - 2014-03-01 22:39 - 00018548 _____ () C:\WINDOWS\FaxSetup.log 2014-03-02 00:09 - 2014-03-01 22:39 - 00008777 _____ () C:\WINDOWS\ocgen.log 2014-03-02 00:09 - 2014-03-01 22:39 - 00002132 _____ () C:\WINDOWS\iis6.log 2014-03-02 00:08 - 2014-03-01 22:44 - 00111672 _____ () C:\WINDOWS\updspapi.log 2014-03-02 00:07 - 2006-01-16 13:41 - 00000000 ____D () C:\WINDOWS\Media 2014-03-01 23:33 - 2006-08-13 15:35 - 00100184 _____ () C:\Dokumente und Einstellungen\Raphaelis\Lokale Einstellungen\Anwendungsdaten\GDIPFONTCACHEV1.DAT 2014-03-01 23:23 - 2006-08-13 15:35 - 00000000 __SHD () C:\Dokumente und Einstellungen\Raphaelis\Lokale Einstellungen\Verlauf 2014-03-01 23:22 - 2014-03-01 23:22 - 00000772 _____ () C:\Dokumente und Einstellungen\LocalService\Startmenü\Programme\Windows Media Player.lnk 2014-03-01 23:22 - 2014-03-01 23:22 - 00000226 _____ () C:\WINDOWS\DtcInstall.log 2014-03-01 23:22 - 2013-11-26 19:14 - 00002333 _____ () C:\WINDOWS\wmsetup.log 2014-03-01 23:22 - 2009-04-17 22:19 - 00000000 ____D () C:\Dokumente und Einstellungen\LocalService\Startmenü\Programme 2014-03-01 23:22 - 2006-08-13 15:35 - 00000718 _____ () C:\Dokumente und Einstellungen\Raphaelis\Startmenü\Programme\Outlook Express.lnk 2014-03-01 23:18 - 2006-01-16 12:53 - 00316640 _____ () C:\WINDOWS\WMSysPr9.prx 2014-03-01 23:16 - 2014-03-01 23:16 - 00000187 _____ () C:\WINDOWS\spupdsvc.log.1.log 2014-03-01 23:16 - 2014-03-01 23:16 - 00000090 _____ () C:\WINDOWS\system32\spupdwxp.log 2014-03-01 23:16 - 2006-01-16 12:39 - 00001158 _____ () C:\WINDOWS\system32\wpa.dbl 2014-03-01 23:13 - 2006-01-16 12:45 - 00333072 _____ () C:\WINDOWS\system32\FNTCACHE.DAT 2014-03-01 23:12 - 2006-01-16 13:41 - 00000000 ____D () C:\WINDOWS\security 2014-03-01 23:10 - 2014-03-01 21:59 - 00477852 _____ () C:\WINDOWS\svcpack.log 2014-03-01 23:09 - 2006-01-16 12:46 - 00002639 _____ () C:\WINDOWS\imsins.BAK 2014-03-01 23:04 - 2014-03-01 23:04 - 00000311 _____ () C:\WINDOWS\sessmgr.setup.log 2014-03-01 23:04 - 2014-03-01 23:04 - 00000173 _____ () C:\WINDOWS\cmsetacl.log 2014-03-01 23:03 - 2006-01-16 12:53 - 00001563 _____ () C:\Dokumente und Einstellungen\All Users\Startmenü\Programmzugriff und -standards.lnk 2014-03-01 23:03 - 2006-01-16 12:49 - 00000000 ___RD () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Zubehör 2014-03-01 23:03 - 2006-01-16 12:46 - 00000000 ___RD () C:\Dokumente und Einstellungen\All Users\Startmenü 2014-03-01 23:02 - 2014-03-01 22:53 - 00000000 ____D () C:\WINDOWS\ServicePackFiles 2014-03-01 23:02 - 2006-01-16 13:41 - 00000000 ____D () C:\WINDOWS\ime 2014-03-01 23:02 - 2006-01-16 12:50 - 00000000 ____D () C:\Programme\Messenger 2014-03-01 23:01 - 2014-03-01 23:01 - 00000000 ____D () C:\WINDOWS\system32\de 2014-03-01 23:01 - 2014-03-01 23:01 - 00000000 ____D () C:\WINDOWS\system32\bits 2014-03-01 23:01 - 2014-03-01 23:01 - 00000000 ____D () C:\WINDOWS\l2schemas 2014-03-01 23:01 - 2006-01-16 13:41 - 00000000 ____D () C:\WINDOWS\system32\usmt 2014-03-01 23:01 - 2006-01-16 13:41 - 00000000 ____D () C:\WINDOWS\PeerNet 2014-03-01 23:01 - 2006-01-16 12:51 - 00000000 ____D () C:\Programme\Movie Maker 2014-03-01 22:53 - 2006-01-16 12:51 - 00000000 ____D () C:\WINDOWS\system32\Restore 2014-03-01 22:52 - 2006-01-16 13:41 - 00000000 ____D () C:\WINDOWS\system32\npp 2014-03-01 22:52 - 2006-01-16 13:41 - 00000000 ____D () C:\WINDOWS\msagent 2014-03-01 22:52 - 2006-01-16 12:51 - 00000000 ____D () C:\WINDOWS\srchasst 2014-03-01 22:52 - 2006-01-16 12:51 - 00000000 ____D () C:\Programme\Outlook Express 2014-03-01 22:52 - 2006-01-16 12:51 - 00000000 ____D () C:\Programme\NetMeeting 2014-03-01 22:52 - 2006-01-16 12:51 - 00000000 ____D () C:\Programme\Gemeinsame Dateien\System 2014-03-01 22:52 - 2006-01-16 12:50 - 00000000 ____D () C:\WINDOWS\system32\Com 2014-03-01 22:52 - 2006-01-16 12:50 - 00000000 ____D () C:\Programme\Windows NT 2014-03-01 22:50 - 2006-01-16 13:41 - 00000000 ____D () C:\WINDOWS\system 2014-03-01 22:43 - 2006-01-16 12:39 - 00251712 __RSH () C:\ntldr 2014-03-01 22:39 - 2014-03-01 22:29 - 00000000 __HDC () C:\WINDOWS\$NtServicePackUninstall$ 2014-03-01 22:39 - 2006-01-16 13:29 - 00000000 ____D () C:\WINDOWS\system32\ReinstallBackups 2014-03-01 22:29 - 2014-03-01 22:29 - 00000597 _____ () C:\WINDOWS\medctroc.Log 2014-02-27 20:30 - 2006-01-16 12:46 - 00000000 ___RD () C:\Programme 2014-02-27 16:13 - 2014-02-27 16:13 - 00000000 ____D () C:\Programme\Malwarebytes' Anti-Malware 2014-02-27 16:13 - 2014-02-27 16:13 - 00000000 ____D () C:\Dokumente und Einstellungen\Raphaelis\Anwendungsdaten\Malwarebytes 2014-02-27 16:13 - 2014-02-27 16:13 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Malwarebytes' Anti-Malware 2014-02-27 16:13 - 2006-01-16 12:46 - 00000000 ___RD () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme 2014-02-27 16:12 - 2006-01-16 12:56 - 00000000 __SHD () C:\Dokumente und Einstellungen\NetworkService 2014-02-25 19:07 - 2014-02-25 19:07 - 00001138 _____ () C:\Dokumente und Einstellungen\Raphaelis\Desktop\JRT.txt 2014-02-25 19:03 - 2014-02-25 19:03 - 00000000 ____D () C:\WINDOWS\ERUNT 2014-02-25 18:21 - 2014-02-25 18:17 - 00000000 ____D () C:\AdwCleaner 2014-02-25 00:10 - 2014-02-24 00:38 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Malwarebytes' Anti-Malware (portable) 2014-02-24 22:06 - 2014-02-24 00:28 - 00052312 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2014-02-24 00:38 - 2014-02-24 00:38 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Malwarebytes 2014-02-23 21:17 - 2006-08-19 02:18 - 00000000 ____D () C:\Dokumente und Einstellungen\Raphaelis\Eigene Dateien\Data 2014-02-23 15:33 - 2014-02-23 15:33 - 00000532 _____ () C:\Dokumente und Einstellungen\Raphaelis\Eigene Dateien\spider.sav 2014-02-22 19:00 - 2006-01-16 12:56 - 00000000 __SHD () C:\Dokumente und Einstellungen\LocalService 2014-02-22 18:09 - 2014-02-22 16:41 - 00000000 ____D () C:\Qoobox 2014-02-22 18:05 - 2014-02-22 16:39 - 00000000 ____D () C:\WINDOWS\erdnt 2014-02-22 18:04 - 2006-01-16 12:39 - 00000249 _____ () C:\WINDOWS\system.ini 2014-02-22 17:50 - 2014-02-22 17:50 - 00000000 _RSHD () C:\cmdcons 2014-02-22 17:50 - 2006-01-16 12:40 - 00000327 __RSH () C:\boot.ini 2014-02-22 16:41 - 2014-02-22 16:41 - 00000000 ___HD () C:\Dokumente und Einstellungen\Raphaelis\Netzwerkumgebung 2014-02-19 21:59 - 2014-02-19 21:59 - 00000000 ____D () C:\Programme\7-Zip 2014-02-19 21:59 - 2014-02-19 21:59 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\7-Zip 2014-02-18 23:51 - 2014-02-09 18:31 - 00000000 ____D () C:\Dokumente und Einstellungen\Raphaelis\Anwendungsdaten\Ymoszi 2014-02-18 19:14 - 2014-02-18 19:14 - 00000000 _____ () C:\Dokumente und Einstellungen\Raphaelis\defogger_reenable 2014-02-18 19:03 - 2014-02-18 19:03 - 00000000 ____D () C:\Dokumente und Einstellungen\Raphaelis\Eigene Dateien\My Received Files 2014-02-16 02:02 - 2006-08-13 15:35 - 00000000 ____D () C:\Dokumente und Einstellungen\Raphaelis\Lokale Einstellungen\Anwendungsdaten\Adobe 2014-02-14 22:17 - 2006-08-15 12:43 - 00000049 _____ () C:\WINDOWS\NeroDigital.ini 2014-02-10 23:36 - 2014-02-10 23:42 - 00450749 ____R () C:\WINDOWS\system32\Drivers\etc\hosts.20140210-234203.backup 2014-02-10 19:50 - 2013-02-07 23:33 - 00000000 ____D () C:\Programme\Mozilla Firefox 2014-02-10 19:47 - 2014-02-10 19:47 - 00000702 _____ () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Mozilla Firefox.lnk 2014-02-10 10:53 - 2010-09-10 21:33 - 00000000 ____D () C:\WINDOWS\system32\NtmsData 2014-02-10 09:55 - 2013-10-09 17:46 - 00000430 _____ () C:\WINDOWS\Tasks\ReclaimerUpdateFiles_Raphaelis.job 2014-02-10 09:02 - 2006-01-16 12:51 - 00000000 ____D () C:\WINDOWS\Registration 2014-02-10 02:13 - 2006-09-02 18:26 - 00019968 _____ () C:\Dokumente und Einstellungen\Raphaelis\Lokale Einstellungen\Anwendungsdaten\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2014-02-04 22:36 - 2006-01-16 12:52 - 00000000 __SHD () C:\Dokumente und Einstellungen\All Users\DRM 2014-02-01 01:07 - 2013-05-24 20:46 - 00054156 ____H () C:\WINDOWS\QTFont.qfn Some content of TEMP: ==================== C:\Dokumente und Einstellungen\Raphaelis\Lokale Einstellungen\temp\Quarantine.exe ==================== Bamital & volsnap Check ================= C:\WINDOWS\explorer.exe [2006-01-16 12:39] - [2008-04-14 07:52] - 1036800 ____A (Microsoft Corporation) 418045a93cd87a352098ab7dabe1b53e C:\WINDOWS\system32\winlogon.exe [2006-01-16 12:39] - [2008-04-14 07:53] - 0513024 ____A (Microsoft Corporation) f09a527b422e25c478e38caa0e44417a C:\WINDOWS\system32\svchost.exe [2006-01-16 12:39] - [2008-04-14 07:53] - 0014336 ____A (Microsoft Corporation) 4fbc75b74479c7a6f829e0ca19df3366 C:\WINDOWS\system32\services.exe [2006-01-16 12:39] - [2008-04-14 07:53] - 0109056 ____A (Microsoft Corporation) 4bb6a83640f1d1792ad21ce767b621c6 C:\WINDOWS\system32\User32.dll [2006-01-16 12:39] - [2008-04-14 07:52] - 0580096 ____A (Microsoft Corporation) b0050cc5340e3a0760dd8b417ff7aebd C:\WINDOWS\system32\userinit.exe [2006-01-16 12:39] - [2008-04-14 07:53] - 0026624 ____A (Microsoft Corporation) 788f95312e26389d596c0fa55834e106 C:\WINDOWS\system32\rpcss.dll [2006-01-16 12:39] - [2008-04-14 07:52] - 0399360 ____A (Microsoft Corporation) e970c2296916bf4a2f958680016fe312 ATTENTION ======> If the system is having audio adware rpcss.dll is patched. Google the MD5, if the MD5 is unique the file is infected. C:\WINDOWS\system32\Drivers\volsnap.sys [2006-01-16 12:39] - [2008-04-14 07:22] - 0053760 ____A (Microsoft Corporation) a5a712f4e880874a477af790b5186e1d ==================== End Of Log ============================ Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x86) Version: 02-03-2014 02 Ran by Raphaelis at 2014-03-02 17:24:23 Running from C:\Dokumente und Einstellungen\Raphaelis\Eigene Dateien\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8551767C-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {855A06F4-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85390A5C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8549C36C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85F24A5C-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854A8B94-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854D48AC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854A2B24-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {853ACADC-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854FAB24-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854A8B3C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854A3894-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8539335C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854AC7B4-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854AA36C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8538837C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8539ADDC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8545451C-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854B0B2C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8549A394-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854B68A4-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854A6054-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85490DDC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8539251C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854B86DC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8539F614-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8563F814-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85F1F054-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8549D054-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85F29DDC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {855B676C-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8541B374-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {853A0054-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854CA5B4-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854BE97C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854EBB24-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854556FC-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8539665C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {855AEA6C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {855B836C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85516A5C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854C4814-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8554B8A4-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854BBDDC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854655F4-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8549E65C-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85F22B64-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8538F4BC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8548A37C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8539489C-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854AA974-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854CA6EC-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854C6974-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854BCC84-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854636DC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85449DDC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854B67E4-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8564FDDC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8557EC24-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85437B34-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854A8C1C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8541E054-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854B48AC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85F20054-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {853E19A4-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85458424-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85371434-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8549542C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8545235C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85F25A5C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8544EDDC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85F69B64-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8549ADDC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85492B44-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {861DF8FC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85397DDC-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85445834-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {853A9B2C-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85450384-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854B4764-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854B9924-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {853A726C-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85F23DDC-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {853A2C1C-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85461984-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85399B2C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85F2689C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854DC6BC-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85441054-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8549EB94-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854E456C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {861DB89C-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85442614-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {853B6054-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854A3654-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854DE434-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854C196C-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854E7274-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {853A7B2C-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85F213F4-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854BA584-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85F24DDC-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8549DDDC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85449424-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85455B3C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {BADB0D00-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8632FB64-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8564DDDC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85597C24-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854A0634-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854DE994-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854ACB64-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8555B6EC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854B3964-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854516DC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {855B4DDC-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {853A37A4-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854CA70C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854C459C-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {852C8384-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8539D7B4-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {855316E4-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85394CEC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854B0B24-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854C35EC-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854F7664-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8544E9A4-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85451314-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {86226054-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854BDDDC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854C3704-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854E4B34-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8548E054-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {853A77A4-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854AE974-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854AEB34-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854533E4-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854ADB3C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85562C24-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85430DDC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85461964-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {853A7054-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85492624-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8549C624-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8546D82C-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85391054-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85458964-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8544F89C-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854CB964-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854A3A5C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854A651C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8545189C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854BB674-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8555DB7C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85F24B34-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85470814-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85F27C1C-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854DA054-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854B7054-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854A389C-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854F0B24-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8549366C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {855B58A4-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854697AC-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8537F6DC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {853B5054-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854A1B24-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854CA35C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854C17D4-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8545945C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854A8B2C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8538483C-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85477B24-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {855B66E4-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85386DDC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854695E4-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854ACA64-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854BA764-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85461B2C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {853A937C-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854567B4-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8549A9DC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854A1DDC-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8555A054-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854A86E4-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854A9C1C-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {00000000-0000-0000-0000-000000000000} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85515974-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854BC054-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {853BE4A4-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8539E434-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85472DDC-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854C9B24-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {853856DC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854B7B24-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854A5054-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854D396C-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8538951C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854B16F4-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854D445C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {855229F4-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85F22054-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85393A5C-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8544789C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8545A9C4-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8551CB34-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854B2614-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8539B52C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8544FB5C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854A6534-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854ACB2C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85497B24-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854F06E4-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854B8B24-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854C2C2C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854A9054-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854B2B2C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {855048B4-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854E561C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854BE964-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {853A07B4-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854AD60C-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85F22DDC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85446DDC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8549960C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8551061C-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854A5974-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85F2189C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85F236DC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8544535C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854A9474-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8544C764-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85392DDC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8545CB24-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {853946DC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85454DDC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {853B6434-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854757AC-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85443DDC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8551A5F4-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854C1B34-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854B5B2C-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {853B7C1C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854B360C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {855BFC24-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854BC594-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8544BDDC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8548EA5C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8544376C-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854A77A4-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854B3B34-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854517C4-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854ABC1C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854D9874-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {853A352C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854E780C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854E44CC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8545151C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85630374-FFA4-00EF-0D24-347CA8A3377C} AV: AntiVir Desktop (Disabled - Up to date) {AD166499-45F9-482A-A743-FDD3350758C7} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854ADB34-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {855B2874-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {853AD054-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854B390C-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854B37D4-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854AFB3C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85468054-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854516DC-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8553B8BC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85529B64-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {853B3054-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854CCDDC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854E36DC-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {855929AC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85481A3C-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8539A8AC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85433054-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85456B24-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854924B4-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {855AA62C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {853CAB2C-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8559E5EC-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8545A4BC-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854957E4-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854D960C-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85516494-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854B6644-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854BA054-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8549E60C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8545F97C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {855968A4-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854C3DDC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854BC51C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854BEB2C-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8549FA5C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854987B4-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854D260C-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85381054-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8551EB4C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854A1274-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85F26A5C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {855AD544-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854E26E4-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854675EC-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85512B44-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854B7964-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {86300054-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85391A5C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854AFB44-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85393C3C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8547BB24-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854A8B24-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85440A5C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {00000246-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8549EDDC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854A16E4-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854BCA3C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85382DDC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854513AC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854A8A5C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854A1C1C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854AA46C-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8552161C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854DC454-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85458534-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854B542C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8549B89C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85F25DDC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854B735C-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854BEB34-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {853826DC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854C0054-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854EF724-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {853B0054-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85493994-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8548BDDC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854ABB34-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854CA89C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854986DC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85460294-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854BAA5C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85468B24-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {853A489C-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8549B2DC-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854F060C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854BE35C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854946A4-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854B5554-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854C043C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {853AA4AC-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85456DDC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8544E594-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85478514-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85397C1C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854AB75C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85F2589C-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854C6374-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854747A4-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {861CD284-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8548B054-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854AD814-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8548735C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854C67BC-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854C0B24-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {853B1B24-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8548E3DC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85385DDC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854CB43C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854B089C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854AF49C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854864B4-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {855AA8A4-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8544A624-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {853A15F4-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {855A9054-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854C2054-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854BDB24-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854C59D4-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854B5DDC-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85F1E3EC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854B189C-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854E35F4-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8564A8A4-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {853BA7A4-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854AB054-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854C6054-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85397054-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85396054-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854EF054-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8545661C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {855105B4-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85520564-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8538DDDC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85F2464C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854A765C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854D0904-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854F2A2C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854AB82C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85F21DDC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {855869AC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854B4B34-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854A096C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {85488DDC-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {854ACC1C-FFA4-00EF-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {853AC424-FFA4-00DE-0D24-347CA8A3377C} AV: Avira AntiVir PersonalEdition Classic (Disabled - Up to date) {8551DB34-FFA4-00DE-0D24-347CA8A3377C} ==================== Installed Programs ====================== 100 Vertragsvorlagen und juristische Schreiben (HKLM\...\100 Vertragsvorlagen und juristische Schreiben_is1) (Version: - ) 7-Zip 9.20 (HKLM\...\7-Zip) (Version: - ) Adobe Flash Player 11 Plugin (HKLM\...\Adobe Flash Player Plugin) (Version: 11.5.502.149 - Adobe Systems Incorporated) Adobe Flash Player ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 9.0.115.0 - Adobe Systems Incorporated) Adobe Photoshop Elements 8.0 (HKLM\...\Adobe Photoshop Elements 8.0) (Version: 8.0 - Adobe Systems Incorporated) Adobe Photoshop Elements 8.0 (Version: 8.0 - Adobe Systems Incorporated) Hidden Adobe Reader 9 - Deutsch (HKLM\...\{AC76BA86-7AD7-1031-7B44-A90000000001}) (Version: 9.0.0 - Adobe Systems Incorporated) ArcSoft PhotoStudio 5.5 (HKLM\...\{230CCBE9-14B0-4008-97AF-30C10F99E42C}) (Version: - ) Avira AntiVir Personal - Free Antivirus (HKLM\...\Avira AntiVir Desktop) (Version: 10.2.0.2100 - Avira GmbH) Bluetooth Stack for Windows by Toshiba (HKLM\...\{CEBB6BFB-D708-4F99-A633-BC2600E01EF6}) (Version: v4.00.23(T) - ) Brother HL-1430 (HKLM\...\Brother HL-1430) (Version: - ) Brother HL-3040CN (HKLM\...\{6FA67F16-DCAB-42F6-A781-DBD8FBE1B740}) (Version: 1.00 - Brother) CD/DVD Drive Acoustic Silencer (HKLM\...\{9FE35071-CAB2-4E79-93E7-BFC6A2DC5C5D}) (Version: 1.00.008 - TOSHIBA) Compatibility Pack für 2007 Office System (HKLM\...\{90120000-0020-0407-0000-0000000FF1CE}) (Version: 12.0.6021.5000 - Microsoft Corporation) DVD Shrink 3.2 (HKLM\...\DVD Shrink_is1) (Version: - DVD Shrink) Free FLV Converter V 7.5.0 (HKLM\...\Free FLV Converter_is1) (Version: 7.5.0.0 - Koyote Soft) Free YouTube Download version 3.1.38.1005 (HKLM\...\Free YouTube Download_is1) (Version: 3.1.38.1005 - DVDVideoSoft Ltd.) GPL Ghostscript 8.56 (HKLM\...\GPL Ghostscript 8.56) (Version: - ) GPL Ghostscript Fonts (HKLM\...\GPL Ghostscript Fonts) (Version: - ) Guitar Pro 5.0 (HKLM\...\Guitar Pro 5_is1) (Version: - Arobas Music) High Definition Audio Driver Package - KB888111 (HKLM\...\KB888111WXPSP2) (Version: 20040219.000000 - Microsoft Corporation) Intel(R) Graphics Media Accelerator Driver (HKLM\...\{8A708DD8-A5E6-11D4-A706-000629E95E20}) (Version: 6.14.10.4436 - ) Intel(R) PRO Network Connections Drivers (HKLM\...\PROSet) (Version: - ) Intel(R) PROSet/Wireless Software (HKLM\...\ProInst) (Version: 10.01.0000 - Intel Corporation) InterVideo WinDVD Creator 2 (HKLM\...\{2FCE4FC5-6930-40E7-A4F1-F862207424EF}) (Version: 2.0.14.376 - InterVideo Inc.) InterVideo WinDVD for TOSHIBA (HKLM\...\{91810AFC-A4F8-4EBA-A5AA-B198BBC81144}) (Version: 5.0-B11.533 - InterVideo Inc.) IsoBuster 1.9.1 (HKLM\...\IsoBuster_is1) (Version: 1.9.1 - Smart Projects) J2SE Runtime Environment 5.0 Update 4 (HKLM\...\{3248F0A8-6813-11D6-A77B-00B0D0150040}) (Version: 1.5.0.40 - Sun Microsystems, Inc.) Java 7 Update 13 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83217013FF}) (Version: 7.0.130 - Oracle) Java Auto Updater (Version: 2.1.9.0 - Sun Microsystems, Inc.) Hidden Macromedia Flash Player (HKLM\...\{0456ebd7-5f67-4ab6-852e-63781e3f389c}) (Version: 7.0.19.0 - Macromedia, Inc.) Malwarebytes Anti-Malware Version 1.75.0.1300 (HKLM\...\Malwarebytes' Anti-Malware_is1) (Version: 1.75.0.1300 - Malwarebytes Corporation) mCore (Version: 5.40.0000 - Intel Corporation) Hidden mDrWiFi (Version: 5.40.0000 - Intel Corporation) Hidden mHelp (Version: 5.40.0000 - Intel) Hidden Microsoft .NET Framework 1.1 (HKLM\...\Microsoft .NET Framework 1.1 (1033)) (Version: - ) Microsoft .NET Framework 1.1 (Version: 1.1.4322 - Microsoft) Hidden Microsoft .NET Framework 1.1 German Language Pack (HKLM\...\{E78BFA60-5393-4C38-82AB-E8019E464EB4}) (Version: 1.1.4322 - Microsoft) Microsoft .NET Framework 1.1 Hotfix (KB886903) (HKLM\...\M886903) (Version: - ) Microsoft .NET Framework 2.0 Service Pack 2 (HKLM\...\{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}) (Version: 2.2.30729 - Microsoft Corporation) Microsoft .NET Framework 3.0 Service Pack 2 (HKLM\...\{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}) (Version: 3.2.30729 - Microsoft Corporation) Microsoft .NET Framework 3.5 SP1 (HKLM\...\Microsoft .NET Framework 3.5 SP1) (Version: - Microsoft Corporation) Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4 Client Profile DEU Language Pack (HKLM\...\Microsoft .NET Framework 4 Client Profile DEU Language Pack) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft AutoRoute 2001 (HKLM\...\{4D719053-5593-11D3-8F25-0060085C1758}) (Version: 8.00.14.1500 - Microsoft) Microsoft Office 2000 Professional (HKLM\...\{00010407-78E1-11D2-B60F-006097C998E7}) (Version: 9.00.2816 - Microsoft Corporation) Microsoft Office Professional Edition 2003 (HKLM\...\{90110407-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.5614.0 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) mIWA (Version: 5.40.0000 - Intel Corporation) Hidden mLogView (Version: 5.40.0000 - Intel Corporation) Hidden mMHouse (Version: 5.40.0000 - Intel Corporation) Hidden Mozilla Firefox 12.0 (x86 de) (HKLM\...\Mozilla Firefox 12.0 (x86 de)) (Version: 12.0 - Mozilla) mPfMgr (Version: 5.40.0000 - Intel Corporation) Hidden mPfWiz (Version: 5.40.0000 - Intel Corporation) Hidden mProSafe (Version: 9.00.0000 - Intel) Hidden MSXML 6.0 Parser (KB933579) (HKLM\...\{0A869A65-8C94-4F7C-A5C7-972D3C8CED9E}) (Version: 6.10.1200.0 - Microsoft Corporation) mWlsSafe (Version: 9.00.0000 - Intel) Hidden mXML (Version: 5.40.0000 - Intel Corporation) Hidden mZConfig (Version: 5.40.0000 - Intel Corporation) Hidden Nero 6 (HKLM\...\Nero - Burning Rom!UninstallKey) (Version: - ) Neuratron AudioScore Lite (HKLM\...\Neuratron AudioScore Lite) (Version: 6.0.0 - Neuratron Limited) Neuratron PhotoScore Lite (HKLM\...\Neuratron PhotoScore Lite) (Version: 5.5.1 - Neuratron Limited) Octoshape Streaming Services (HKCU\...\Octoshape Streaming Services) (Version: - Octoshape ApS) OmniPage SE 2.0 (HKLM\...\{79D5997E-BF79-48BB-8B41-9BE59C15C2D7}) (Version: 2.00.0000 - ScanSoft, Inc.) Power Tab Editor 1.7 (HKLM\...\{6B3CA80E-6AC0-4725-BABF-9B0FEF880CB3}) (Version: 1.7.0 - Power Tab Software) PowerDVD (HKLM\...\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}) (Version: - ) psynetic®-EK-Steuerrechner 1.0 (HKLM\...\psynetic®-EK-Steuerrechner) (Version: 1.0 - Polygonsoft Ltd.) QuickTime (HKLM\...\{E0D51394-1D45-460A-B62D-383BC4F8B335}) (Version: 7.3.1.70 - Apple Inc.) RealPlayer (HKLM\...\RealPlayer 12.0) (Version: - RealNetworks) Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 2.02 - Realtek Semiconductor Corp.) Riffstation Trial version 1.31 (HKLM\...\{CC77D38B-FD8D-4F01-9922-0416C0F78655}_is1) (Version: 1.31 - Sonic Ladder) SD-Sicherheitsmodul (HKLM\...\{C45F4811-31D5-4786-801D-F79CD06EDD85}) (Version: 1.0.3 - TOSHIBA Corporation) Sicherheitsupdate für Step by Step Interactive Training (KB898458) (HKLM\...\KB898458) (Version: 20050502.101010 - Microsoft Corporation) Sing Magic (HKLM\...\Sing Magic1.7) (Version: 1.7 - Sing-Magic.com) Sonic DLA (HKLM\...\{1206EF92-2E83-4859-ACCB-2048C3CB7DA6}) (Version: 5.2.0 - Sonic Solutions) Sonic RecordNow! (HKLM\...\{9541FED0-327F-4DF0-8B96-EF57EF622F19}) (Version: 7.31 - Sonic Solutions) Spybot - Search & Destroy (HKLM\...\{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1) (Version: 1.6.2 - Safer Networking Limited) Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 8.2.9.0 - Synaptics) Texas Instruments PCIxx21/x515/xx12 drivers. (HKLM\...\InstallShield_{4497AFF6-98C4-4F49-B073-F48F42BCBF9E}) (Version: 1.16.0000 - Texas Instruments Inc.) TIPCI (Version: 1.16.0000 - Texas Instruments Inc.) Hidden TOSHIBA Assist (HKLM\...\{12B3A009-A080-4619-9A2A-C6DB151D8D67}) (Version: - ) TOSHIBA Benutzerhandbücher (HKLM\...\{3EB6332B-AF02-457C-A31C-835458C5B48B}) (Version: 7.05 - TOSHIBA) TOSHIBA ConfigFree (HKLM\...\{BDD83DC9-BEE9-4654-A5DA-CC46C250088D}) (Version: 5.90.05 - ) TOSHIBA Controls (HKLM\...\{A6690C0E-B96E-4F0F-A8EB-D5B332454AC6}) (Version: - ) TOSHIBA Hotkey Utility (HKLM\...\{64DD71BC-3109-4C88-9AD3-D5422644B722}) (Version: 1.00.01ST - ) TOSHIBA SD-Speicherkarten-Formatierung (HKLM\...\{48CF9A66-5F03-4025-ABD0-B3A3FA095A59}) (Version: - ) TOSHIBA Software Modem (HKLM\...\TOSHIBA Software Modem) (Version: 2.1.62 (SM2162ALD04) - ) TOSHIBA TouchPad ON/Off Utility (HKLM\...\{69BE47C2-36FE-4397-8199-85D8EAE69982}) (Version: 1.00.01ST - ) TOSHIBA Utilities (HKLM\...\{78C68CB9-3DF5-44F3-AB9D-FA305C5EB85C}) (Version: 1.00.07ST - ) TOSHIBA Virtual Sound (HKLM\...\{8B12BA86-ADAC-4BA6-B441-FFC591087252}) (Version: - ) TOSHIBA Zoom-Dienstprogramm (HKLM\...\{64212898-097F-4F3F-AECA-6D34A7EF82DF}) (Version: - ) VLC media player 1.1.5 (HKLM\...\VLC media player) (Version: 1.1.5 - VideoLAN) WebFldrs XP (Version: 9.50.7523 - Microsoft Corporation) Hidden Windows Imaging Component (HKLM\...\WIC) (Version: 3.0.0.0 - Microsoft Corporation) Windows Internet Explorer 8 (HKLM\...\ie8) (Version: 20090308.140743 - Microsoft Corporation) Windows Media Format Runtime (HKLM\...\Windows Media Format Runtime) (Version: - ) Windows Media Player 10 (HKLM\...\Windows Media Player) (Version: - ) Windows XP Service Pack 3 (HKLM\...\Windows XP Service Pack) (Version: 20080414.031514 - Microsoft Corporation) WinRAR archiver (HKLM\...\WinRAR archiver) (Version: - ) Works Suite-Betriebssystem-Pack (Version: 1.0.0.0000 - Microsoft Corporation) Hidden Works-Synchronisierung (Version: 1.0.0.0000 - Firmenname) Hidden ==================== Restore Points ========================= 01-02-2014 21:08:23 Systemprüfpunkt 02-02-2014 22:44:31 Systemprüfpunkt 04-02-2014 16:45:48 Systemprüfpunkt 06-02-2014 18:15:01 Systemprüfpunkt 09-02-2014 20:03:15 Systemprüfpunkt 10-02-2014 22:20:26 Systemprüfpunkt 13-02-2014 15:57:10 Systemprüfpunkt 15-02-2014 16:17:16 Systemprüfpunkt 16-02-2014 19:11:41 Systemprüfpunkt 18-02-2014 20:08:15 Systemprüfpunkt 20-02-2014 19:11:21 Systemprüfpunkt 21-02-2014 21:52:21 Systemprüfpunkt 23-02-2014 15:33:19 Systemprüfpunkt 24-02-2014 01:46:50 Malwarebytes Anti-Rootkit Restore Point 25-02-2014 18:20:36 Systemprüfpunkt 27-02-2014 12:26:45 Systemprüfpunkt 01-03-2014 00:05:07 Systemprüfpunkt 01-03-2014 21:41:19 Windows XP Service Pack 3 wurde installiert. 01-03-2014 23:06:51 Windows Internet Explorer 8 wurde installiert. ==================== Hosts content: ========================== 2006-01-16 12:39 - 2014-02-22 18:04 - 00000027 ____A C:\WINDOWS\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Scheduled Tasks (whitelisted) ============= Task: C:\WINDOWS\Tasks\ReclaimerUpdateFiles_Raphaelis.job => C:\Dokumente und Einstellungen\Raphaelis\Anwendungsdaten\Real\Update\UpgradeHelper\RealPlayer\10.60\agent\rnupgagent.exe Task: C:\WINDOWS\Tasks\ReclaimerUpdateXML_Raphaelis.job => C:\Dokumente und Einstellungen\Raphaelis\Anwendungsdaten\Real\Update\UpgradeHelper\RealPlayer\10.60\agent\rnupgagent.exe ==================== Loaded Modules (whitelisted) ============= 2005-11-28 10:59 - 2005-11-28 10:59 - 00876544 _____ () C:\Programme\Intel\Wireless\Bin\LIBEAY32.dll 2005-11-28 10:59 - 2005-11-28 10:59 - 00053322 _____ () C:\Programme\Intel\Wireless\Bin\IntStngs.dll 2005-11-28 10:59 - 2005-11-28 10:59 - 00208965 _____ () C:\Programme\Intel\Wireless\Bin\IWMSPROV.DLL 2004-07-20 17:04 - 2004-07-20 17:04 - 00094208 _____ () C:\WINDOWS\system32\TosBtHcrpAPI.dll 2006-01-16 15:16 - 2002-03-03 04:40 - 00045056 _____ () C:\WINDOWS\system32\TDispVol.dll 2006-09-04 13:24 - 2006-08-05 10:34 - 00126464 _____ () C:\Programme\WinRAR\rarext.dll 2009-09-16 21:20 - 2010-01-28 12:57 - 00355688 _____ () C:\Programme\Avira\AntiVir Desktop\sqlite3.dll 2006-01-16 14:31 - 2006-01-04 18:14 - 00049152 _____ () C:\Programme\Toshiba\Toshiba Applet\TouchPad_OnOff.dll 2006-01-16 14:31 - 2005-11-23 14:55 - 00118784 _____ () C:\WINDOWS\system32\TCtrlIO.DLL 2005-11-28 10:59 - 2005-11-28 10:59 - 00876544 _____ () C:\Programme\Intel\Wireless\bin\LIBEAY32.dll 2005-11-28 10:59 - 2005-11-28 10:59 - 00053322 _____ () C:\Programme\Intel\Wireless\bin\IntStngs.dll 2005-11-03 10:37 - 2005-11-03 10:37 - 00970862 _____ () C:\Programme\Intel\Wireless\Bin\acAuth.dll 2005-11-28 10:59 - 2005-11-28 10:59 - 00208965 _____ () C:\Programme\Intel\Wireless\Bin\iWMSProv.dll 2005-11-28 10:59 - 2005-11-28 10:59 - 00876544 _____ () C:\Programme\Intel\Wireless\Bin\Libeay32.dll ==================== Alternate Data Streams (whitelisted) ========= ==================== Safe Mode (whitelisted) =================== ==================== Disabled items from MSCONFIG ============== ==================== Faulty Device Manager Devices ============= Name: Intel(R) PRO/100 VE Network Connection Description: Intel(R) PRO/100 VE Network Connection Class Guid: {4D36E972-E325-11CE-BFC1-08002BE10318} Manufacturer: Intel Service: E100B Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Event log errors: ========================= Application errors: ================== Error: (03/02/2014 00:16:20 AM) (Source: WmiAdapter) (User: VORDEFINIERT) Description: Dienst konnte nicht geöffnet werden. Error: (03/01/2014 07:37:21 PM) (Source: Application Hang) (User: ) Description: Stillstehende Anwendung OUTLOOK.EXE, Version 11.0.5510.0, Stillstandmodul hungapp, Version 0.0.0.0, Stillstandadresse 0x00000000. Error: (03/01/2014 07:37:17 PM) (Source: Application Hang) (User: ) Description: Stillstehende Anwendung OUTLOOK.EXE, Version 11.0.5510.0, Stillstandmodul hungapp, Version 0.0.0.0, Stillstandadresse 0x00000000. Error: (02/27/2014 09:26:52 PM) (Source: WmiAdapter) (User: VORDEFINIERT) Description: Dienst konnte nicht geöffnet werden. Error: (02/27/2014 02:03:06 PM) (Source: Application Hang) (User: ) Description: Stillstehende Anwendung firefox.exe, Version 12.0.0.4493, Stillstandmodul hungapp, Version 0.0.0.0, Stillstandadresse 0x00000000. Error: (02/23/2014 10:09:59 PM) (Source: crypt32) (User: ) Description: Der automatische Aktualisierungsabruf der Drittanbieterstammlisten-Sequenznummer von <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt> ist fehlgeschlagen mit dem Fehler: Der angegebene Server kann den angeforderten Vorgang nicht ausführen. . Error: (02/23/2014 10:09:59 PM) (Source: crypt32) (User: ) Description: Der automatische Aktualisierungsabruf der Drittanbieterstammlisten-Sequenznummer von <hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt> ist fehlgeschlagen mit dem Fehler: Dieser Vorgang wurde wegen Zeitüberschreitung zurückgegeben. . Error: (02/22/2014 05:56:51 PM) (Source: Application Error) (User: ) Description: Fehlgeschlagene Anwendung pev.exe, Version 0.0.0.0, fehlgeschlagenes Modul pev.exe, Version 0.0.0.0, Fehleradresse 0x0008d1c0. Das medienspezifische Ereignis für [pev.exe!ws!] wird verarbeitet. Error: (02/22/2014 00:19:54 PM) (Source: WmiAdapter) (User: VORDEFINIERT) Description: Dienst konnte nicht geöffnet werden. Error: (02/21/2014 11:55:00 PM) (Source: Application Hang) (User: ) Description: Stillstehende Anwendung firefox.exe, Version 12.0.0.4493, Stillstandmodul hungapp, Version 0.0.0.0, Stillstandadresse 0x00000000. System errors: ============= Error: (03/02/2014 00:16:53 PM) (Source: DCOM) (User: YOUR-C372440F79) Description: Der Server "{00024500-0000-0000-C000-000000000046}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Error: (03/02/2014 00:14:29 PM) (Source: DCOM) (User: YOUR-C372440F79) Description: Der Server "{E85062FB-914A-40A2-8801-5DD803045204}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Error: (03/02/2014 00:12:38 PM) (Source: DCOM) (User: YOUR-C372440F79) Description: Der Server "{000209FF-0000-0000-C000-000000000046}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Error: (03/02/2014 00:12:35 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Automatische Updates" wurde nicht ordnungsgemäß gestartet. Error: (03/02/2014 00:12:12 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Avira AntiVir Guard" wurde nicht ordnungsgemäß gestartet. Error: (03/02/2014 00:12:12 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "BrPar" ist von der Gruppe "Parallel arbitrator" abhängig. Kein Mitglied dieser Gruppe wurde jedoch gestartet. Error: (03/02/2014 00:57:53 AM) (Source: DCOM) (User: YOUR-C372440F79) Description: Der Server "{00024500-0000-0000-C000-000000000046}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Error: (03/02/2014 00:55:13 AM) (Source: DCOM) (User: YOUR-C372440F79) Description: Der Server "{000209FF-0000-0000-C000-000000000046}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Error: (03/02/2014 00:53:12 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Avira AntiVir Guard" wurde nicht ordnungsgemäß gestartet. Error: (03/02/2014 00:53:12 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "BrPar" ist von der Gruppe "Parallel arbitrator" abhängig. Kein Mitglied dieser Gruppe wurde jedoch gestartet. Microsoft Office Sessions: ========================= Error: (03/02/2014 00:16:20 AM) (Source: WmiAdapter)(User: VORDEFINIERT) Description: Error: (03/01/2014 07:37:21 PM) (Source: Application Hang)(User: ) Description: OUTLOOK.EXE11.0.5510.0hungapp0.0.0.000000000 Error: (03/01/2014 07:37:17 PM) (Source: Application Hang)(User: ) Description: OUTLOOK.EXE11.0.5510.0hungapp0.0.0.000000000 Error: (02/27/2014 09:26:52 PM) (Source: WmiAdapter)(User: VORDEFINIERT) Description: Error: (02/27/2014 02:03:06 PM) (Source: Application Hang)(User: ) Description: firefox.exe12.0.0.4493hungapp0.0.0.000000000 Error: (02/23/2014 10:09:59 PM) (Source: crypt32)(User: ) Description: hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txtDer angegebene Server kann den angeforderten Vorgang nicht ausführen. Error: (02/23/2014 10:09:59 PM) (Source: crypt32)(User: ) Description: hxxp://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txtDieser Vorgang wurde wegen Zeitüberschreitung zurückgegeben. Error: (02/22/2014 05:56:51 PM) (Source: Application Error)(User: ) Description: pev.exe0.0.0.0pev.exe0.0.0.00008d1c0 Error: (02/22/2014 00:19:54 PM) (Source: WmiAdapter)(User: VORDEFINIERT) Description: Error: (02/21/2014 11:55:00 PM) (Source: Application Hang)(User: ) Description: firefox.exe12.0.0.4493hungapp0.0.0.000000000 ==================== Memory info =========================== Percentage of memory in use: 56% Total physical RAM: 1013.98 MB Available physical RAM: 438.18 MB Total Pagefile: 2444.76 MB Available Pagefile: 1761.32 MB Total Virtual: 2047.88 MB Available Virtual: 1922.13 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:74.53 GB) (Free:9.69 GB) NTFS ==>[Drive with boot components (Windows XP)] ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows XP) (Size: 75 GB) (Disk ID: ACCD4F75) Partition: GPT Partition Type. ==================== End Of Log ============================ |
02.03.2014, 17:40 | #20 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Windows XP: Computer bootet und arbeitet sehr langsam nach Viren-Befall Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter HKU\S-1-5-21-3290459178-3813852024-1158968473-1006\...\Run: [unyc.exe] - "C:\Dokumente und Einstellungen\Raphaelis\Anwendungsdaten\Uhsa\unyc.exe" C:\Dokumente und Einstellungen\Raphaelis\Anwendungsdaten\Uhsa Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
__________________ Logfiles bitte immer in CODE-Tags posten |
02.03.2014, 18:59 | #21 |
| Windows XP: Computer bootet und arbeitet sehr langsam nach Viren-Befall Hier die fixlog.txt: Code:
ATTFilter Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 02-03-2014 02 Ran by Raphaelis at 2014-03-02 18:56:07 Run:1 Running from C:\Dokumente und Einstellungen\Raphaelis\Eigene Dateien\Downloads Boot Mode: Normal ============================================== Content of fixlist: ***************** HKU\S-1-5-21-3290459178-3813852024-1158968473-1006\...\Run: [unyc.exe] - "C:\Dokumente und Einstellungen\Raphaelis\Anwendungsdaten\Uhsa\unyc.exe" C:\Dokumente und Einstellungen\Raphaelis\Anwendungsdaten\Uhsa ***************** HKU\S-1-5-21-3290459178-3813852024-1158968473-1006\Software\Microsoft\Windows\CurrentVersion\Run\\unyc.exe => Value deleted successfully. "C:\Dokumente und Einstellungen\Raphaelis\Anwendungsdaten\Uhsa" => File/Directory not found. ==== End of Fixlog ==== |
02.03.2014, 22:48 | #22 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Windows XP: Computer bootet und arbeitet sehr langsam nach Viren-Befall Sieht soweit ok aus Wegen Cookies und anderer Dinge im Web: Um die Pest von vornherein zu blocken (also TrackingCookies, Werbebanner etc.) müsstest du dir mal sowas wie MVPS Hosts File anschauen => Blocking Unwanted Parasites with a Hosts File - sinnvollerweise solltest du alle 4 Wochen mal bei MVPS nachsehen, ob er eine neue Hosts Datei herausgebracht hat. Ist aber nur optional. Um Usertracking zu verhindern kann man gut die Firefox-Erweiterung Ghostery verwenden. Info: Cookies sind keine Schädlinge direkt, aber es besteht die Gefahr der missbräuchlichen Verwendung (eindeutige Wiedererkennung zB für gezielte Werbung o.ä. => HTTP-Cookie ) Ansonsten gibt es noch gute Cookiemanager, Erweiterungen für den Firefox zB wäre da CookieCuller Wenn du aber damit leben kannst, dich bei jeder Browsersession überall neu einzuloggen (zB Facebook, Ebay, GMX, oder auch Trojaner-Board) dann stell den Browser einfach so ein, dass einfach alles beim Beenden des Browser inkl. Cookies gelöscht wird. Ist dein System nun wieder in Ordnung oder gibt's noch andere Funde oder Probleme?
__________________ Logfiles bitte immer in CODE-Tags posten |
02.03.2014, 23:59 | #23 |
| Windows XP: Computer bootet und arbeitet sehr langsam nach Viren-Befall Leider arbeitet mein System immer noch sehr langsam. Zum Hochfahren benötigt mein Computer circa 15 Minuten, und das Öffnen von Programmen wie Outlook und Firefox dauert bis zu einer Minute. Müßten die gefundenen Virenprogramme nicht noch extra gelöscht werden, oder ist das automatisch geschehen? In der MBAR-Quarantäne sind zum Beispiel drei Viren abgelegt. Selbst das Öffnen des Papierkorbs dauert 20 Sekunden. Es scheinen ständig im Hintergrund Rechenvorgänge stattzufinden. |
03.03.2014, 10:46 | #24 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Windows XP: Computer bootet und arbeitet sehr langsam nach Viren-Befall
__________________ Logfiles bitte immer in CODE-Tags posten |
05.03.2014, 22:19 | #25 |
| Windows XP: Computer bootet und arbeitet sehr langsam nach Viren-Befall Hallo Cosinus, habe alle 5 „Reinigungsschritte“ durchgeführt, ohne daß sich etwas grundlegend geändert hätte. Der Computer ist auch erst so langsam, seit vor gut zwei Wochen die Viren ins System gelangt sind. Vorher lief er völlig normal. Ich hatte regelmäßig manuell die temporären Dateien gelöscht und ab und zu die Datenträgerbereinigung und die Defragmentierung durchgeführt. Auch befinden sich kaum Dateien auf meinem Desktop. Was ich seit dem Virenbefall beobachte ist, daß der Computer ständig eine hohe Rechenaktivität zeigt, auch wenn ich überhaupt keine Anwendung geöffnet habe. Wenn ich dann eine Anwendung starte, steht scheinbar nur sehr wenig Arbeitsspeicher zur Verfügung, so daß die Befehle nur sehr langsam ausgeführt werden können. Am Ende der Boot-Phase erscheint außerdem regelmäßig die Meldung „Der Computer ist eventuell gefährdet. Keine Firewall aktiv“, obwohl die Firewall von Windows aktiviert ist. Manchmal, wenn ich eine Anwendung starte erscheint auch die Meldung „Server ist ausgelastet. Dieser Vorgang kann nicht ausgeführt werden, da die andere Anwendung aktiv ist“. |
05.03.2014, 23:44 | #26 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Windows XP: Computer bootet und arbeitet sehr langsam nach Viren-Befall Du bist sicher, dass alle Updates für Windows installiert sind? Ist im Prinzip auch egal. Es gibt eh nur noch 1x Updates für Windows XP, da kannste auch jetzt mal testweise den Dienst Automatische Updates mal komplett beenden und deaktivieren. Aber genau solche Punkte "hasse" ich bei der Bereinigung von Uralt-Systemen. Laut Logs alles sauber, trotzdem spinnt die Kiste, da fragt man sich warum man da Energie reinstecken sollte wo doch dieses OS über 12 Jahre alt ist und bald eh keine Updates mehr erhält.
__________________ Logfiles bitte immer in CODE-Tags posten |
06.03.2014, 16:42 | #27 |
| Windows XP: Computer bootet und arbeitet sehr langsam nach Viren-Befall Hallo Cosinus, erst einmal vielen Dank, daß Du Deine Zeit und Aufmerksamkeit meinem Computer-Problem gewidmet hast. Die Viren sind nun alle entfernt, meine Daten sind noch alle erhalten, und das ist doch schon einmal ein Erfolg! Die Arbeitsgeschwindigkeit des Computers habe ich dadurch deutlich erhöhen können, daß ich Avira deinstalliert habe. Avira hatte im Hintergrund ständig gerechnet und, wie ich jetzt erst entdeckt habe, umfangreiche Scaninfo-Dateien von insgesamt fast einem halben Gigabyte Größe angelegt. Ähnlich verhielt es sich mit den automatischen Updates von Windows, die ich deaktivieren mußte, da der Rechner ständig Update-Prozesse durchführte. Bis zur Beendigung des Service werde ich nun die Updates manuell durchführen. Lediglich das Booten des PC und das Starten von Programmen dauert noch lange. Ist das aber erfolgt, läßt es sich recht gut arbeiten Wieso ich mit so einem „veralteten“ Betriebssystem arbeite? Ganz einfach, weil es die knapp acht Jahre, die ich es nun verwendet habe, absolut zuverlässig gearbeitet hat. Es hatten sich zwar hin und wieder Vieren eingeschlichen, aber die ließen sich mit den Standard-Virenprogrammen, die als Freeware im Netz angeboten wurden, wieder entfernen. Deinen Rat, auf ein anderes Betriebssystem umzusteigen, werde ich gerne befolgen. Vielleicht könntest Du mir noch einen Tipp geben, welches Virenprogramm ich vorläufig statt Avira auf meinem Rechner installieren könnte. |
06.03.2014, 17:49 | #28 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Windows XP: Computer bootet und arbeitet sehr langsam nach Viren-BefallLesestoff: Warum wir Avira nicht mehr empfehlen Avira liefert seit einiger Zeit mit der Standardinstallation die Ask Toolbar mit aus. Diese Toolbar ist Voraussetzung dafür, dass der Webguard zuverlässig funktioniert. Die Ask Toolbar ist dafür bekannt, dass sie das Surfverhalten des Benutzers ausspioniert, um damit in letzter Konsequenz Geld zu verdienen. Daher wird diese Toolbar von uns als "schädlich" eingestuft. Mehr Informationen. Eine Sicherheitsfirma, die dem Benutzer praktisch ungefragt schädliche Software "unterjubelt", scheidet für uns daher aus. Wir empfehlen daher allen Nutzern von Avira aufgrund dieser Geschäftspraktik, der teilweise äußerst schlechten Erkennungsrate und der überaus nervtötenden Werbung Avira zu deinstallieren und auf ein alternatives Produkt auszuweichen. Solltest du dich zu einem Wechsel entscheiden, empfehlen wir dir nach der Deinstallation mit dem Avira-Cleaner alle Reste zu entfernen. Tipps Anti-Virusprogramme
__________________ Logfiles bitte immer in CODE-Tags posten |
09.03.2014, 18:33 | #29 |
| Windows XP: Computer bootet und arbeitet sehr langsam nach Viren-Befall Hallo Cosinus, habe Avast installiert. Der Computer arbeitet im Prinzip gut bis auf die Störung durch die Rechenvorgänge im Hintergrund. Wenn ich zum Beispiel ein Video oder eine Musikdatei ablaufen lasse, tritt circa alle halbe Minute eine beträchtliche Verzögerung ein, die einige Sekunden dauert, bis es wieder normal weitergeht. Das heißt, die Rechenvorgänge im Hintergrund treten zyklisch alle halbe Minute für wenige Sekunden auf. Hast Du eine Idee, was das sein könnte und was ich dagegen unternehmen könnte? |
09.03.2014, 19:01 | #30 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | Windows XP: Computer bootet und arbeitet sehr langsam nach Viren-BefallZitat:
__________________ Logfiles bitte immer in CODE-Tags posten |
Themen zu Windows XP: Computer bootet und arbeitet sehr langsam nach Viren-Befall |
4d36e972-e325-11ce-bfc1-08002be10318, adware, antivir, antivirus, avira, bonjour, computer, computer bootet, converter, desktop, device driver, dvdvideosoft ltd., einstellungen, fehler, firefox, flash player, google, google analytics, home, homepage, koyote, langsam, logfile, mozilla, newtab, realtek, registry, safer networking, scan, security, software, windows, windows xp |